Suspicious
Suspect

e9df38cda2f3f8924b6c0a5bb3b38a09

PE Executable
MD5: e9df38cda2f3f8924b6c0a5bb3b38a09
Size: 3.59 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 e9df38cda2f3f8924b6c0a5bb3b38a09
Sha1 e5a04864ed50e152d8c0e7a1d6e7bc0cfa21ed63
Sha256 0b93ca2778b5ac0ae2be58985b0ffecb7d6ce6870815c1f85d14505e4005b9e9
Sha384 27f3903d22af1fa49a42a6e9363230681e45418b3fc2b67bc802af3faf44f98ef8d9b283ab11115102d0036f263025ee
Sha512 af4ba061892e85b8ecddb6c61c60cadf0e2ff99f8769369cbf6705d730fd47569488bf24b1fcac7e2cbdb5a0fd061e925a4e451c0b264789784e662ccce3caf9
SSDeep 98304:1FjYe2xSG9I8n1LRemvRSvo9dRIV+Xrh:XjYe20HepOwRX
TLSH E0F533AE613F9266E72BC7736C8AE80105F534C10EEF53D430B96DF825F611486AB1B5
PeID
Microsoft Visual C++ v6.0 DLLUPX -> www.upx.sourceforge.netUPX 2.93 - 3.95 (LZMA) ASL sign UPX 3.02UPX v3.0UPX v3.0 (EXE_LZMA) -> Markus Oberhumer & Laszlo Molnar & John Reiser
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
UPX0
UPX1
UPX2
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
UPX0
UPX1
UPX2
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙