Suspicious
Suspect

afd2c927893f26aa914e36a416701cbf

PE Executable
MD5: afd2c927893f26aa914e36a416701cbf
Size: 1.32 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 afd2c927893f26aa914e36a416701cbf
Sha1 5fa3e17f4b9905968d5d23c2e95bf0b2094cec9a
Sha256 64df9bee21edc91b35948ec9fe215dcbbdfe194551e826dc9bb9b24ac3de5d2c
Sha384 7fe82bf857b3c623cd923c992f0b15500acfe555f83dac0ca585a310cdfc814cbd698865334c3ddcb942e633998ff0af
Sha512 84187874d9583ea083cb85e6f57e89093f2ebcd8022173ad34309046597b056f7dd4f332b9d19c87169cbefea02be4330ed911c7717bff289602cf4b0d9ae26a
SSDeep 24576:mTQxeXxpSzHQNgjQrZrsyBhaRYk2heYEPRwK6:mT+eXxYzwNKE5BhxeYL
TLSH 44558E06A3B900ADD5A7C1B8C9174A07EB7274451334ABDB5798CE662F23FE1667F320
PeID
Microsoft Visual C++ v6.0 DLLMicrosoft v12.00 64bit C++ DLL - sign ASL ( 64 bit ) UPolyX 0.3 -> delikon
Overlay_4eb8ec9e.bin
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.fptable
.reloc
STICH beta

No STICH Path has been generated for this analysis yet.

1 structural branch were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 1
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Overlay extracted: Overlay_4eb8ec9e.bin (18432 bytes)
Info
PDB Path: t$di
Overlay_4eb8ec9e.bin
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.fptable
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙