Suspicious
Suspect

c1165519430c253c6f0a78c2e1c9b4d3

PE Executable
MD5: c1165519430c253c6f0a78c2e1c9b4d3
Size: 6.12 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 c1165519430c253c6f0a78c2e1c9b4d3
Sha1 97ec6c8b562aaef59b10812d6deb527b898767d7
Sha256 6ca51deb014b8b313336ff09d44e9b308e55e1c4e8a08d315096250dea0ad853
Sha384 aa239c32dd29c1668e2fca2347a31de36b81e5e26c15eb4e166c109ae52b2b0b9765bbe4f94d10f57259378e5fecc523
Sha512 2eaff50355508f68d4c428068247b6ef91f6dbf76245c0870f70689fc4ded6329d316d85907557090c24b15acd77ba9fab9a500baef9c5c20ac3222e0e31358f
SSDeep 49152:b0iEPoOCAqwy12sMy5j9XQ2thQy/Z0ymc4ggu6a0WaBUFqxPvMNsg6/bHLDM/DHw:57/7xxtx0JFxUscR5vmEqkbeJoOgOQ6
TLSH A6564B55BA6B94ACD197C47483468A639E2130DF0B36BAFF418485383F6ABF11B3D724
PeID
MASM/TASM - sig4 (h)Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLLPe123 v2006.4.4-4.12Private EXE Protector V2.30-V2.3X -> SetiSoft Team
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: IT_solutions.pdb
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙