Suspicious
Suspect

a9136085ba3585577f8f8fd4b32760a4

PE Executable
MD5: a9136085ba3585577f8f8fd4b32760a4
Size: 3.59 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 a9136085ba3585577f8f8fd4b32760a4
Sha1 61f87be624b1d95189be285d9d5c8d20d050cdd1
Sha256 ab4e43a86948ffd778d81c5fc8d8d0b620d7d4cab09f659140715279a3be0da3
Sha384 c88dcf63dbf19c050553ba27f53fe3a866d9438534d2aacd5359d3a2232fd38930d0ac945046d8e86bcda8949535a8e8
Sha512 3d4310b6bd0290447dcfbac3315f292003dd0a0b1a405b2ea1bd07cd36ceca6beab7b968999d3ab39c14f65e3a3a9c68b05b0a8defa4fb63cd83453f603181a3
SSDeep 49152:l8s8srWUp1/MSZdYLMQsrleyWXvoQ/EEPmGt7BpPPxbHuCE/B7770p3ky9mFd9pI:qsRWUp1/VZdYNshViodEZFRCjzd9H
TLSH 39F533751501E5D2FE3022F49047281BA364BB260793AE93FA2395BDAF59D24F492CCF
PeID
Microsoft Visual C++ v6.0 DLLUPX -> www.upx.sourceforge.netUPX 2.93 - 3.95 (LZMA) ASL sign UPX 3.02UPX v3.0UPX v3.0 (EXE_LZMA) -> Markus Oberhumer & Laszlo Molnar & John Reiser
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
UPX0
UPX1
UPX2
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
UPX0
UPX1
UPX2
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙