Suspicious
Suspect

b9a222a8ed9984bf392d9db4d559fa34

Share on LinkedIn
Print
PE Executable
MD5: b9a222a8ed9984bf392d9db4d559fa34
Size: 5.3 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 b9a222a8ed9984bf392d9db4d559fa34
Sha1 c6309a40963185e6f9f0f9e8247d8840ac810e9a
Sha256 29eaf996e94ad29861ab63c7c8e4a03d15c41c4db3c60bcc72dfabf64a5cb7a2
Sha384 c498f0490822c37d6ab28aa358dce3686497f117ee861b0f5be5b5dc0bbca2f3a97b0fb2cf919ae3d23b11d959f121d3
Sha512 b54c1e3923e4d12ea64cd2c7d718b27f40fd06b0107899efb9e10ec0dac80245e24c5aa4a55ffb9bcf566e9fcff3aa8693f959aee24c602732d721ffb82af3ad
SSDeep 24576:jbLgcbLgdlQhfdmMSirYbcMNgef0QeQjG:jnpnQQqMSPbcBVQej
TLSH 033612D9767840B8E4066E76A7734A3AD6F27C95233D520F4B548E560D0339CEAE8B23
PeID
Microsoft Visual C++ 6.0 DLL (Debug)Microsoft Visual C++ v6.0 DLLMicrosoft v12.00 64bit C++ DLL - sign ASL ( 64 bit ) UPolyX 0.3 -> delikon
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader FAIL, AsmResolver Mapped OK
PE Layout UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
An error has occurred. This application may no longer respond until reloaded. Reload 🗙