Suspicious
Suspect

edaccccb62ff97a103fdf39a69a76a1d

PE Executable
MD5: edaccccb62ff97a103fdf39a69a76a1d
Size: 5.25 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 edaccccb62ff97a103fdf39a69a76a1d
Sha1 c397ec035b2cdbc951f09e224cced12782af0f53
Sha256 9d4029a4584dac715f708ed2012f2dcbd08ba283ecef8b6c14d7c412e030cc6b
Sha384 207719f7a0a7c81d19680789ea69bd15d72a857b48dd1f297792f04d0cda72850a9e6b10748d80f7795b4dcb34ab93d1
Sha512 14448ed9847e85def422b9f03340eda8ba168df1bbb677713e83a37aa3119dd50d7870b8b4b6d5f386b583db0aa5268fc8e122d1084805639254eac24c24244b
SSDeep 98304:mbfhJ3k7iCZWfzQhqtmpveAqOQeNA+sHYa2d+l9QH0f:g300zDtH3e2sA+G
TLSH 143633AAADC5C875D49AC7B8906274BFF37A3B918914BC2E3ACC3C054D58B08857DBC5
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.mg;
.Lv$
.cu0
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.mg;
.Lv$
.cu0
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙