Suspicious
Suspect

c14c60271aab1a654e6e1e91ef9cf811

PE Executable
MD5: c14c60271aab1a654e6e1e91ef9cf811
Size: 2.96 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 c14c60271aab1a654e6e1e91ef9cf811
Sha1 12deed4ea79f2c8920acfdf052a3165ecf5ca5dc
Sha256 d269bd2c8e6fd003dac682f37ae9b0b6b173db757b6c09dc7e1e1d46e29b73cf
Sha384 3eb9eeb076e4bc3aa731f65d9c611491594b58423b8b2ca111f78f8e163d8d2c67f5bb68ef54333c6967ea4f2237955c
Sha512 4409abc27b8895a6bde092897b91575467323b0e4eb61a7f215ce6415205a359007e1f2c5f0a9cf4dea401de3818c2473d28751c80549e0c76508dd341b7bf4d
SSDeep 49152:5RNgJpaAE7Wwns0XMzhfD7i3MdFhvaBMWg3EHPBWgpsqPw1NqG1wu:5bgTa7I15G3SFCMWg3qBxsrI4
TLSH 46D5238ABDF619B9D876C3B7CF82E03DB12ABB914A915E9777CC29108D130545D3233A
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.CRT
.tt=
.owm
.$IK
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.CRT
.tt=
.owm
.$IK
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙