Suspicious
Suspect

d54564b71fbd16a14eef1a7db3d9b52c

PE Executable
MD5: d54564b71fbd16a14eef1a7db3d9b52c
Size: 2.93 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 d54564b71fbd16a14eef1a7db3d9b52c
Sha1 a6161a4ce9f5c8b6f01cfa9acc83519bd69f8e16
Sha256 fbe92013eaeb2808f5b9b7c585d2cc3af5b884cc424e8c3b49fc54ebaa1264f3
Sha384 82a58d2531f432918a342fd6d07d3dbce065a3bcf1ec66ff8253cb5882cee5eafe4acc2319cc0d2fb9cfd6c49f7b0968
Sha512 a185747a6762d3b5a5565b4cb4a7a1e9e18180d9a1b26940199f5212d3d68c0cf734cb50aac26946a10203eeda6dcebecf572a948af195bd208e1c9a78733f12
SSDeep 49152:Wwx+/t7QWOAguYssS19OkbaVGI54zydvkLgjVmh+YXwPmv+2Or9EWtC7gngf:Ww4tvCuQ+9Oka4wvk3+YAb2yarg
TLSH 18D523DAA8F20EB5D47FC7728F52F8AD706937948A710D5BB2CD7A008DA24585C363B0
PeID
Microsoft Visual C++ v6.0 DLLPe123 v2006.4.4-4.12
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.&$z
. #P
.zm4
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.&$z
. #P
.zm4
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙