Suspicious
Suspect

dd6920d9209ea1cdcbb9be9e2e605d57

PE Executable
MD5: dd6920d9209ea1cdcbb9be9e2e605d57
Size: 313.34 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 dd6920d9209ea1cdcbb9be9e2e605d57
Sha1 64a0d5786d516194a42776f23e584a07d2c02080
Sha256 39e5875573d0bcd3fd29c680ff0081b52b6c38e01edea4a2bd718b22884a4307
Sha384 6576560b65b28202af694c544667c9f1b8fe10d72368eb4aaa62b2b4e738b254212ac1963d4e0f6b3d2ea12326c6d39b
Sha512 fa320d4f3150912f7c78ebd5e46584761dff4db50cb1f202cc445a88a2ef2f20f5181193b66255efec521a7d14d0ee001cd8303ea36d60119f962fb3399b181b
SSDeep 6144:B2WegH4uetIFh4MYM10NUfaRiYw8WL70olW:wR+jhBYMm1EYw8WLYo
TLSH 5E644B06F26154F8E567C17D830A9261F632BC8517216AFF23A456353F637E86F38B28
PeID
Microsoft Visual C++ 8.0Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.fptable
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: t
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.fptable
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙