Suspicious
Suspect

8a51e8c37ac2de0ba217a63497eb13b6

PE Executable
MD5: 8a51e8c37ac2de0ba217a63497eb13b6
Size: 2.4 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 8a51e8c37ac2de0ba217a63497eb13b6
Sha1 bd88858bbd63dcab071335efffb7be309fe87911
Sha256 e98d11f2cb889c12bfb98b281ccbae6f7570e85fc8c44563ebef72156d114f3c
Sha384 b9fc95a606c9d3021bfafdfb32aa8d2fcc0b0ea1d1824b641635b59d8548669926c1f7942e79f9adf464f882369429f7
Sha512 e3fc50cc22399e1de254e0f6d0d8f73e16c86725f48796419fd721b66af44b6128efe287ab9c2eb13e8b84e4157b98b8df560180c3f58863ad69096566e6519d
SSDeep 49152:8PiUB//8xo3xjxJZns2KR2Z3Au/PJvTs6a:SJnKRa/54
TLSH 76B59F5AA3B801FDE0BBD274C9165A07D7B2B8061670D79F13E0479A2F23B715E6E321
PeID
MASM/TASM - sig4 (h)Microsoft Visual C++ 8.0Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLLPe123 v2006.4.4-4.12UPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
_RDATA
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
_RDATA
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙