Suspicious
Suspect

91269eb3c084956392ddaf6a60139fd5

PE Executable
MD5: 91269eb3c084956392ddaf6a60139fd5
Size: 5.3 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 91269eb3c084956392ddaf6a60139fd5
Sha1 6e96fe30490bed142959566daf8be3f66bd3645c
Sha256 9d769ee6c8365659c7a703f221caab25f1a972bf1324dc3623d08e2eaa5b4856
Sha384 57a6864375fc1ab1e3497085fe595a9f33d4aa9461da9603fd79f93d225a9052ed37a6aa4b110394d298ceb8764726ea
Sha512 9240905409cb48e93348ab002919e5d02de80f3723afd3e34265c9521ce2502d5ec862b819f2158977f3c49df44a3c13dcef3d1342564b1493e410fb46c4848e
SSDeep 24576:jbLg+bLgurgDdmMSirYbcMNgef0QeQjG/D8kIqJASk+RdhAdmvnY:jnXnsEMSPbcBVQej/NAARdhnvY
TLSH 4C366C01D1E41A60E6F24AF62AB9DB10933ABE46995BDA5E1221410F0C73F1CDDE6F3D
PeID
Microsoft Visual C++ v6.0 DLLMicrosoft v12.00 64bit C++ DLL - sign ASL ( 64 bit ) UPolyX 0.3 -> delikon
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader FAIL, AsmResolver Mapped OK
PE Layout UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
No malware configuration was found at this point.
PE Layout UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
91269eb3c084956392ddaf6a60139fd5
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙