Malicious
PE Executable
MD5: 983b6a8ee7d60125872aaacfcdfa524b
Size: 5.8 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | 983b6a8ee7d60125872aaacfcdfa524b |
| Sha1 | 066f4f76a6f63d4a8dc04f642a13214ea49c82e5 |
| Sha256 | 2620851e7e33d65d448e36c5970ccf74ef0ca9f980e2b02c40d3b75ba0a16176 |
| Sha384 | 35ab400b4315ded1a1295d95701fa07d9cca00c9625c13584b93fd683958bfbfaea531760f02010014966ee7756795c4 |
| Sha512 | 78ce754884befa4a9534ab88768c512c635ce5ed6d21953cc17d435e931b3079134c6fb4acfebacbee86b841f59a3aba2fc304edf480316ca85ae6ba80af3356 |
| SSDeep | 98304:QTrY1fUBtCujNTHbj/KD8gohT3higkVgohT3higk:2M1cBtjjN/DKD8q |
| TLSH | 8D464922519416EDE07FC1798A8A5E12FF717009136567EF09A045A39EA7EF0BE3F312 |
PeID
MASM/TASM - sig4 (h)Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLLPe123 v2006.4.4-4.12Private EXE Protector V2.30-V2.3X -> SetiSoft Team
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
Structural branches: 2
STICH kept: 1secondary ignored: 1
bin
1Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe>pe:rsrc>pe:dll
Shape
pe:exe>pe:rsrc>pe:dll
3 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | PDB Path: t$di |