Suspicious
Suspect

e256669e66df22bb97c0a7ca417f4928

Share on LinkedIn
Print
PE Executable
MD5: e256669e66df22bb97c0a7ca417f4928
Size: 5.3 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 e256669e66df22bb97c0a7ca417f4928
Sha1 726bb87e197c72e83f4e32b3fd94dcb499596cda
Sha256 2d658d64d9f8d49cd52f7e249ab58759113a64f2906f0035bcef8440f0abb239
Sha384 e66ec9bdaf474152eb9b69c342433c93aacf49a6104f7f3fb4f2d67fbe46fb1b810aced0173c0fe23a8214127e0646ec
Sha512 b3967a7719da90fa45bdc68dd2f90b1df2efc5261c53bae125c736a14605e3930563efbf8edd5fee39d4559046bcfae90f98c3cad77e0286ce028e6be37ddfac
SSDeep 24576:jbLgBbLguriBJMSirYbcMNgef0QeQjG/D8kI:jnsnGMSPbcBVQej/
TLSH 0E36225631A840F4D1076234E8B75F11F2B7BC6A227A560FEB508B362D13B92F728763
PeID
Microsoft Visual C++ v6.0 DLLMicrosoft v12.00 64bit C++ DLL - sign ASL ( 64 bit ) UPolyX 0.3 -> delikon
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader FAIL, AsmResolver Mapped OK
PE Layout UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
An error has occurred. This application may no longer respond until reloaded. Reload 🗙