Suspicious
Suspect

InstallerV14035x64.exe

PE Executable
MD5: 8368a56d82bcb70487ee1bedf1d6bd35
Size: 15 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 8368a56d82bcb70487ee1bedf1d6bd35
Sha1 5ddf025fa119109f74ecb3495427e378637ed860
Sha256 c7d9c7f67b761688cfb67083b7e01381db90cb67adb06c8618889dfdff2396e8
Sha384 2cf1f9cfd4a7e95025fcc6ea417b647cd822f9b0d5dac14fab5dd6f3daa8497538ed49e7c7dc951d5f9f14bb8ad95f8c
Sha512 467303aac9fb4bfd0aef832df0869f99eda593b5f66d3b0b45d532d0ba0dfcb0aa43eea423e828228c35a6077626db35dba5b2c00201c5e6ce16a6696ad85021
SSDeep 393216:JbDgNJjnIMn55jNbA0VzhMc3xpRkYql23AJ0Zvc:afPtbhVNMc3xpRkYqKxNc
TLSH 08E633E63D13F1A2DCE9C5F13239EB4B89830191CA0B707DBA593F6B6635D01076962B
PeID
Microsoft Visual C++ v6.0 DLLPeStubOEP v1.xRPolyCryptor V1.4.2 -> Vaskax64 Themida / Winlicense v3.0.x.0 PACKED sign ASL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.idata
.rsrc
.themida
.boot
Resources
RT_ICON
ID:0001
ID:0
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:1033
STICH beta

No STICH Path has been generated for this analysis yet.

1 structural branch were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 1
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.idata
.rsrc
.themida
.boot
Resources
RT_ICON
ID:0001
ID:0
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:1033
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙