Suspicious
Suspect

b5d8b7933e72685f8f1231ad2efd4273

Share on LinkedIn
Print
PE Executable
MD5: b5d8b7933e72685f8f1231ad2efd4273
Size: 5.3 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 b5d8b7933e72685f8f1231ad2efd4273
Sha1 f26f0ebd0e3101d43377adba63371ab0d3086422
Sha256 a69b5e8a0770722ee01f07e72c5779dd5fa7e650de4d988f54f014661061eea7
Sha384 1d812dd262668c5995deefd4fa434638b977dbe029e9c374ff6f08418539bb9ced61b245558272f63c857b8f70513ff7
Sha512 0f57c1f36f7e856cbf9c30fec20bcf7f1ee18131ac1adb07a4b39c9a237ecaab3abe069c9671a0520071651a170cb2c4685fddd32fa2ce2d9ed49ecbf360b611
SSDeep 24576:jbLgWbLgddQhfdmMSirYbcMNgef0QeQjG/D8kIUt/8uME7A4kqAH1pNZtA0p+9Xp:jnXnAQqMSPbcBVQej/F3R8yAH1plAH
TLSH E436234936ACA0FCD0665378A4B34E2AA7B77C5A2375870F5BC4876A0C13790EF6C752
PeID
Microsoft Visual C++ 6.0 DLL (Debug)Microsoft Visual C++ v6.0 DLLMicrosoft v12.00 64bit C++ DLL - sign ASL ( 64 bit ) UPolyX 0.3 -> delikon
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader FAIL, AsmResolver Mapped OK
PE Layout UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
An error has occurred. This application may no longer respond until reloaded. Reload 🗙