Suspicious
Suspect

8268a9b428d1f4cb1b99be62de632278

PE Executable
MD5: 8268a9b428d1f4cb1b99be62de632278
Size: 594.43 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 8268a9b428d1f4cb1b99be62de632278
Sha1 aac8a77da11087ced49cdf8289b29139a5886904
Sha256 2f5d27fe9ba480086a1cf206f903e2e3a6ba5fa7e050ef21e85a62060ec4f445
Sha384 63a6839420bd3dbbdffcb576a6ea1b1466694f29ae1fa6c5d928d00ffc2017fac7fae556d2a0cec7cc0331ff0c1a7809
Sha512 1eb71c8eae66601cd4176c17410a416ee4ea7507149425d23d4a9534637c68112748e51c77dfc659a1f977fc528d4181965d218fda53fe15e0363a22a506b7ff
SSDeep 12288:ONvGerh2DUnu4JgXI9dagcucsIkFvdiX8in1pzlzeSXCgn8:fEM2wI9dkucZ2vMXtjzlQu8
TLSH E0C412E4E3567547E636CE7DF784F3E183DCB8B12A511C6930EEBAC298423988B49057
PeID
Microsoft Visual C++ 8Safeguard 1.03 -> Simonzh
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.fptable
.reloc
.tpdakni
.simgavd
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: D:\jenkins\workspace\vector\bin\nova.pdb
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.fptable
.reloc
.tpdakni
.simgavd
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙