Suspicious
Suspect

af1ac5d2435d139a98962876534adfcb

PE Executable
MD5: af1ac5d2435d139a98962876534adfcb
Size: 5.27 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 af1ac5d2435d139a98962876534adfcb
Sha1 86cc0da2edcd30f78bde7aad92c3976715128d35
Sha256 264a6ef8a8853d0e7dac18b0d4e043ab7579b4cc885093128012b34339cee194
Sha384 30cc9cb400fa139ed2eb7b274b831449909897083ab072c24051f350f3194bc73cb5cb5052b20b42b050d778168c858e
Sha512 482727caa066915d98d3b3e0fc6bfaa196b8f38fa22a02e5246f02ff32bd0bfdd6dca6368e69b7865adf903536b201e6ffdadfe4e9452ba7050ac080c20e7c53
SSDeep 98304:k6T9ZWwMtxJXJcpuIA7ZnaL5OYAZHQe+n4sZxqsGmF:kUVMxXJV0bAodosG
TLSH 39363382A6C6A475C052C374919331BE7376BBE4C952BD1B3ACE5D109E97E28493B3C3
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.HWu
.t*l
.hp?
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.HWu
.t*l
.hp?
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙