Suspicious
Suspect

d6e6b089da51d3662f052cb8f5f9436f

PE Executable
MD5: d6e6b089da51d3662f052cb8f5f9436f
Size: 2.17 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 d6e6b089da51d3662f052cb8f5f9436f
Sha1 6e033b19aeeb926db0582c09536c5f89e63baf08
Sha256 4cecb0e41d53ccc73078d80dcac576b7b0905f37193693f9b41cf4eb6651fa85
Sha384 078fe0c2d96cb68febd18af3cdc89349c0f73c98cd5fc0cff7d86d5e9c32cab3d9d55996944d4a14e899958cf3f03a58
Sha512 4e4c83b44ae158f2d933c7a25d8e8cb118c687276f9e2f8f4c28aa82317bd11339a13d160ec4e5996e200655cbdbff42e0ec51996f21b8d0a35d92fd5fca06d5
SSDeep 49152:LqDVO9BKpUEBzXz96joLBNyhxRvNTYIU6iJ:p+pPZJA5n+
TLSH B7A57D03F69580E8D1AEC478C3579637EA72B88D0A34B2EB6BD05B113E26F905F1D719
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: SecurityHealthService.pdb
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙