Suspicious
Suspect

b1c0271fb95baf0b83ec7c2d55c354b7

Share on LinkedIn
Print
PE Executable
MD5: b1c0271fb95baf0b83ec7c2d55c354b7
Size: 2.94 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 b1c0271fb95baf0b83ec7c2d55c354b7
Sha1 87ebc061d0d9a94559ce39fe1b4d9f78d350bb65
Sha256 768a14a6c0c4f8ea3ea8267931da827ffeac67b8cff42e6f28e09d99acd428d7
Sha384 55e96edc4588c5e46b7f4c5e34a6c75d104a119f2ffee8703bb86fc71e67f70d86619b16ba59028d4a166f7d2c16e70e
Sha512 db5b9cb9e099d0ea7309d93440ad60cf34e0846415f109ebe5f18f283259b2bd33730bdff3af36db9d3c5271678e663d24c87872f3f3c71774ad38543acb3c84
SSDeep 49152:ntJ5+BgfufmYWYKEzlV/3qQqZUFDbRSe7GE8XzJEeJfWbVagevRbYr6WdCY:tgmY6YOURSeCE8XzJDlwVRQRbj/
TLSH 1CD5238AB1FA18B1C8F3C7B2EF02F02D716973D14A708D9B75CD6A018D42568AD36376
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.#d5
.@Yg
.00-
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙