Suspicious
Suspect

aaa55d5c516e18e8d785f7dde08dd3c8

Share on LinkedIn
Print
7Zip SFX Archive
MD5: aaa55d5c516e18e8d785f7dde08dd3c8
Size: 25.8 MB
application/octet-stream

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 aaa55d5c516e18e8d785f7dde08dd3c8
Sha1 b9e70718f47a2ca71f60d85306d3033828c4ecd1
Sha256 d0a4469ea7ecdb54bcd5aacb200a82e68b4596e4ff1f0dda016149ca04e3bb32
Sha384 e85f07259a076bfb36835d6fa443eea0f9095246d5c19fb71d0dcb7bc3b3b0efed01261fcf42d1de7bd2a29a0a7f7fce
Sha512 cf1b791eaf112d6335070725056e2beec4c222e26084989c60cae9186050f59d1c3dbc5acb08447955fcba694086cd1bb6448d05daf7b582c8f93b34a8cac9e1
SSDeep 98304:cs0VysGFMb1oG4QOye2F3+CMkBZ76Ya227tD:psyT/QMIHI
TLSH 3E47B59AB740CD83F517E23694679BF02326ECB48BB1934321917F59BF7E1898EE1184
PeID
HQR data fileMicrosoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft Team
[Authenticode]_e3f7cd85.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
_RDATA
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

Structural branches: 3 STICH kept: 1secondary ignored: 2
bin 2

Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe>arc:7z
Shape pe:exe>arc:7z
2 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x1898400 size 12096 bytes
An error has occurred. This application may no longer respond until reloaded. Reload 🗙