Suspicious
Suspect

d1057f25411252f22c3d0ee83ecebb9c

Share on LinkedIn
Print
PE Executable
MD5: d1057f25411252f22c3d0ee83ecebb9c
Size: 2.9 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 d1057f25411252f22c3d0ee83ecebb9c
Sha1 605beb500de5a38e520fa9686b80e91083e12337
Sha256 a495cb6ea1fce0b4a006562dc2e8d5db918acbf711192e10941fea612f792c20
Sha384 e0c3536476eb3d41041450046e0f22f13c27bf1e5711ac16017ac88a65ef9225b8267ded9f3a0aa27e57bf22f1b2e9e6
Sha512 adab39e32e9fb6bd1bb51bdc5d2971d586b295a150f96ca9c8d9c499eecac6580aa5f134fa5e840d2f186c888af54c939d49cae650f15bffea7197c27a1559cb
SSDeep 49152:W4yETHLzsua/GpLAMl7Idjraw3l/ewelvlThdN8RrAxHcOn6isuyb:WjWkZ/G+Mp4jpewAv9hkrAxHcOn
TLSH 05D5239AA9F41970D467C379EFA3F46EB02A7B554B60CE5BF6CC6E108A134981037372
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.4$h
.^YH
.7'!
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙