Suspicious
Suspect

a1a478d62f6136d17bbe14f383461f5a

Share on LinkedIn
Print
PE Executable
MD5: a1a478d62f6136d17bbe14f383461f5a
Size: 2.95 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 a1a478d62f6136d17bbe14f383461f5a
Sha1 2738ab7d7e4deada98cada56f773e1b3171e8190
Sha256 dfe9c723df55df4993deddfdf7ee4edfaf222646a1c9c87bafec3b10275bcda7
Sha384 f3e961a4733377cac55a19f6bf055a551bc8d48b855f91166b1309c8e000df64dc8772f5f5ba342aa50bfe167d4d1c26
Sha512 596517ae99f6f4c50b8409d0e646556eb5aec0e13cd05c056f150fc58892b8dd7904d654cb1d4738528ccbbe2055d6ea14c7f03a9354101df0904a05ff08c69b
SSDeep 49152:XOZG5BqYeAJyskGNB37Do2U36NnLwMsvQDEm1Hl431t7XxyxnX38W:XVBdbk6R7Do2+6NnzD/1Urw
TLSH E2D523EE79FA1875D436C3A6AF82F97DB03C3B4446B08E177A8D6A408E135149C3A735
PeID
Microsoft Visual C++ v6.0 DLLPe123 v2006.4.4-4.12UPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.=V%
.WmF
.-)h
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙