Suspicious
Suspect

d222549235db4112333d82e12f767d47

PE Executable
MD5: d222549235db4112333d82e12f767d47
Size: 4.14 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 d222549235db4112333d82e12f767d47
Sha1 12463a81a786b04fe4b3b7d1aa1222e589e5921d
Sha256 f9964a8d9d01052d9bebe057deadd7ce9d794e8296e2a72229f8ae4aa62ae224
Sha384 69ea918041738efefe8bda34f15bdbef50d28355142dac2aa1a685a658337f55281b82cf4d760c9a4e1a564c951e64fd
Sha512 fd5f8c876d16690c361503cd993440d09ded77704c1fb84ae5358c2656ac2b1ab885e497a56295595bafb2061d977087df4e1f2fb3d13d8cc12d15c483d832d5
SSDeep 49152:4zwYqdALwkbQB1bw/48Hgbbv5mAF71XXG8PTWUhs5zs4moSK7iSAEExYxIU6isz:4oNB8kFB1m8bPs5zs53+sz
TLSH 96164A43F67690FCC16AC0788346A132FF32BC8948367AAB5BD09B353E65B406B1DB55
PeID
Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.data
.rdata
.pdata
.xdata
.bss
.idata
.tls
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.data
.rdata
.pdata
.xdata
.bss
.idata
.tls
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙