Suspicious
Suspect

c092f97a7b9171ffa66f7bfd64dceb5e

PE Executable
MD5: c092f97a7b9171ffa66f7bfd64dceb5e
Size: 3.59 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 c092f97a7b9171ffa66f7bfd64dceb5e
Sha1 34881e243670f17602aaadb7f919030bda869813
Sha256 5d623da3f87ddfd80e485ff2c0af68cc66e63b454024101d5287e0af610fa0dd
Sha384 14140a0024d5c665ae338d5ff3959f9a773aeb6570d3f3628afbd866db187c6dffc4ace66aefa02f1da15e5e026a6b12
Sha512 df9adbbc8468f97f67e8c315115ef80275968912f54ea7370a6e88a9dcec61c36cf99298d8c1bb610d995ce29464edaf25f1622c64a61f290a8106f75810f0ba
SSDeep 98304:JvTwekxO//mENzCJ5Juq9Yl67ywOTKBjfx1EfNrMHSnG:tBQOCJTIDfTKVfxUMHSnG
TLSH 8BF533E575A62F22D8162CBFD92FD3040BA181263E25F0F3DD624B16D630BAA54C4F2D
PeID
Microsoft Visual C++ v6.0 DLLUPX -> www.upx.sourceforge.netUPX 2.93 - 3.95 (LZMA) ASL sign UPX 3.02UPX v3.0UPX v3.0 (EXE_LZMA) -> Markus Oberhumer & Laszlo Molnar & John ReiserUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
UPX0
UPX1
UPX2
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
UPX0
UPX1
UPX2
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙