Suspicious
Suspect

9b42816d0a8f4659e51514f275a7e50c

Share on LinkedIn
Print
PE Executable
MD5: 9b42816d0a8f4659e51514f275a7e50c
Size: 2.9 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 9b42816d0a8f4659e51514f275a7e50c
Sha1 d90602ed7d09621b1c7a25f8dbab228795b23bc0
Sha256 14b2ac356ed75d10ef40bbaaa48e7dd9fff7de9719c2a43ad123fe843dd4e4e2
Sha384 98d461e9b18af2aa003cdac19f0c4e6600cb3b27ba48deec740e0e463109be4c5195d80c1dcd48044f113f887b4ae462
Sha512 c8f83225665e1f3c126666a03dc264b222ba7c9330183f71c46a414730fe56566dda9b9e092334613ba8ec2ebb613fe7f39a0b68477eb9135f63c578ce5e346a
SSDeep 49152:AmWmV3WJWemnOmDZgiKhTQlUVxlt3pOQ2Sj3pR7BnCVIk43hwK1hKQxXCow/mXkk:AmWmEJWemn/OhTmUT4ej3XEqkiiKM+Hc
TLSH 09D5239569F928B1D467C7B74F47E8BEB1543BA08B748E43F6CC6A041E83604A83B771
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.CRT
.rwp
._Ww
.N2T
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙