Malicious
PE Executable
MD5: c69fe3a3a86181c7c20bd4f6897b8a48
Size: 4.14 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | c69fe3a3a86181c7c20bd4f6897b8a48 |
| Sha1 | 0376e2387f88e242b192f7f2fdc42d7b8ab0f91e |
| Sha256 | 3a564ac117daf786d4510de6591fc73d9f4716b3239f20c94ff98c79fb853ae3 |
| Sha384 | 3ba472fee2a9a5a9b00e3a91d8ea9d911ccae8fde01855405224d4819705357455c8e4c13354b2033725e0c6ba11a1cb |
| Sha512 | c8a8ad68c3ac22ddd4b9efca0f7582341818745ac611fed489062de94eb4f3dfbfb384f0f9209bc46a1c5e32430f5f5fba9e4e1dd5b6540fe87f18beedfdfe13 |
| SSDeep | 49152:sWZanBBDY9nX+PBM4yELe2oWncYOqx7HLJNhQgtI/+yo8y:sd8yHCWcothmGx8y |
| TLSH | B5169C03AE9118B9C459A231C8B38642777CBC491B3673E73E9077BA2E767D05E7A314 |
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamUPolyX 0.3 -> delikon
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:dll~T1027~T1055>bin
Shape
pe:dll>bin
malicious
2 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Authenticode present at 0x3F2FB8 size 2424 bytes |