Suspicious
Suspect

859e6086ad54d9e3d2db73add94c3481

Share on LinkedIn
Print
PE Executable
MD5: 859e6086ad54d9e3d2db73add94c3481
Size: 2.91 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 859e6086ad54d9e3d2db73add94c3481
Sha1 1ff0cd2e9ff81b39d80f832c78260cbde3ece3b5
Sha256 4dc581d0962a65ca6570184cc0586efaaa4a3e4afd0c7caf148b3901375dc8fd
Sha384 a7607a0c16aee9ac5c5033eb97b451e4d1116231227b9274eeaeaa645a594ec2cf98663986ec1efaad9fc5cc736ff6a8
Sha512 fd6bbe8b1b8be4fc4dda48fe85b805cd6f8c8cf909988d624dd4c873c5c10ba092ede1e72514fa584e82a95b087d947b5e3f3f53f33a8444b48ca936d4895a17
SSDeep 49152:Yt4VgCTLo4tlaRNq8RmQsHJ6JoQaALADyXsRG6CdPiQ/4IauQ9Tw0c0lOK:Yt4VgIL2NrtABIlRwI5iTdB
TLSH F0D523A7B4F62D71C437D7B28F22E53E702A378187659E07B5CC2A186E225885D37336
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.CRT
.lQ-
.<!9
.)i`
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙