Suspicious
Suspect

a567eff6cb3448293a25eaf0970a44e3

PE Executable
MD5: a567eff6cb3448293a25eaf0970a44e3
Size: 3 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 a567eff6cb3448293a25eaf0970a44e3
Sha1 8ce1e4e500f7fa25ec48332023b2aa0ff789327f
Sha256 b8c1c8f9c34a33e84930fbaf8a3d52954420bc000f01ea45d48ffdfe108b0c60
Sha384 424b1a96558075980f4b0e36d26284cea27cae7cdaab54c509dde0a0bb1efb51f4d199d32cfc8f007eb34b7e1ad92f79
Sha512 6d83122f56925a79c0a498fe301f7e8150900602b52c30352f1660e1774e76eca929dd1f8bb9c4dacb2de4df87330364c8956a3770260ee48e6805c692c8e734
SSDeep 49152:Qf7mZlyW3Yy5/pU+G2mDQUjiL/jq1JBHKz8ce2T4CvuD18NoCkN+3iN:QTmZr5/pU72mDLGO1JtWs8oGoVw3
TLSH B8D52285B8F61EB5D836C3B29D83E0BDB129775496658D1B37CD66008CA38987C393BC
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.CRT
.Ikn
.?n!
.wkS
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.CRT
.Ikn
.?n!
.wkS
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙