Suspicious
Suspect

a9136085ba3585577f8f8fd4b32760a4

Share on LinkedIn
Print
PE Executable
MD5: a9136085ba3585577f8f8fd4b32760a4
Size: 3.59 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 a9136085ba3585577f8f8fd4b32760a4
Sha1 61f87be624b1d95189be285d9d5c8d20d050cdd1
Sha256 ab4e43a86948ffd778d81c5fc8d8d0b620d7d4cab09f659140715279a3be0da3
Sha384 c88dcf63dbf19c050553ba27f53fe3a866d9438534d2aacd5359d3a2232fd38930d0ac945046d8e86bcda8949535a8e8
Sha512 3d4310b6bd0290447dcfbac3315f292003dd0a0b1a405b2ea1bd07cd36ceca6beab7b968999d3ab39c14f65e3a3a9c68b05b0a8defa4fb63cd83453f603181a3
SSDeep 49152:l8s8srWUp1/MSZdYLMQsrleyWXvoQ/EEPmGt7BpPPxbHuCE/B7770p3ky9mFd9pI:qsRWUp1/VZdYNshViodEZFRCjzd9H
TLSH 39F533751501E5D2FE3022F49047281BA364BB260793AE93FA2395BDAF59D24F492CCF
PeID
Microsoft Visual C++ v6.0 DLLUPX -> www.upx.sourceforge.netUPX 2.93 - 3.95 (LZMA) ASL sign UPX 3.02UPX v3.0UPX v3.0 (EXE_LZMA) -> Markus Oberhumer & Laszlo Molnar & John Reiser
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
UPX0
UPX1
UPX2
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙