Suspicious
Suspect

e3b906f0acacf59d044b4cedee606464

Share on LinkedIn
Print
PE Executable
MD5: e3b906f0acacf59d044b4cedee606464
Size: 2.98 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 e3b906f0acacf59d044b4cedee606464
Sha1 bda54c64e8b8244fc244e5fcf832d63f6ab63d51
Sha256 daceb4fa08abb38b4d3adb8db6c93f1f69885ce10ab0b40bba58f242c97f3ef8
Sha384 87dcf70743fb378a24867ac0c7e51629b34ee73d6d5ce327f6c2d4671a3cc325ea58901bcd6fb17a5804d20796816942
Sha512 892e7b135bd9a37bd1628a9b5a52659dba05fcdbc60e82f658097318bb0ff3f952f2fe63e23177fc106df97fa86803d23b0de7a271ca1c2c99f04d76ecf82ea3
SSDeep 49152:+HT941VfTDA0DzYtTa80PKx/ORU660shrlT7yrMnJxDN9OOlyM/bDCqC8C1muj/t:nQUzY16AFn0aT7yrqxD/yMXCq0ms
TLSH 21D5225EFCF61974E436C3B34283B4AEB07977418A618C577ACC67106D63928BC3A279
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.,?l
.B}T
.?Ku
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙