Suspicious
Suspect

ab21d2b6129276da2e3884d6a86f7630

PE Executable
MD5: ab21d2b6129276da2e3884d6a86f7630
Size: 3.59 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 ab21d2b6129276da2e3884d6a86f7630
Sha1 5b6b31f57a5eb4109effccb3d55c32c12bf31a23
Sha256 def4ed166b78f608e57283ca29ceefa132d049606afbfb8ea32b6c5c27866087
Sha384 6a25eee0e0daefb85fca68d2eb8fb197e2939f26792a5274d4df9bbddc6c3b33d9df2b605ee858bbf1443814593e5357
Sha512 33a96bca0bac026c79cc636a2a41caf4b32845a96ab49afd730deae4fbd4228d7802f573a07fa54391830812b3170217542bf7510470b33bf910c335c7ce43b8
SSDeep 98304:tupvfuL0V1k5HRnUKA1rjRqeDwihFnTeX+0VWVR+TfTX:Uvfw0/aRnMrVhDwihl+EVRQT
TLSH F2F53313682977CFC3B6A739C0916DA67D8FEED08524588610A0C1CB19F2B73B953E79
PeID
Microsoft Visual C++ v6.0 DLLUPX -> www.upx.sourceforge.netUPX 2.93 - 3.95 (LZMA) ASL sign UPX 3.02UPX v3.0UPX v3.0 (EXE_LZMA) -> Markus Oberhumer & Laszlo Molnar & John Reiser
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
UPX0
UPX1
UPX2
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
UPX0
UPX1
UPX2
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙