Suspicious
Suspect

fc06b6c7641a42a85265f3e6b8e4b517

PE Executable
MD5: fc06b6c7641a42a85265f3e6b8e4b517
Size: 2.96 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 fc06b6c7641a42a85265f3e6b8e4b517
Sha1 11adf28d4ede2f362438b07ec336b61141baf9d7
Sha256 ea5c078547d7e70e6ea29cc877e9c45a7ab80ff35ae5a7dd7ff49c3ee3541939
Sha384 8e8637ffe55cea5060d0298e4e3263f8ed13d9e6624267958781dd5c85b4e49428ae47d006e4b7dee1744567a5861bf9
Sha512 0f8c81c1d3d9677a7fdfb9e89f5cb7b97c709cd85ae8ec7b6adb509f315a3b25bbe9cc1881f6c92b40e825f7e61a5171038f3e2b830778ae570f32ca75221eb1
SSDeep 49152:utuXnQU7LFM5O/EYfbTSL+MXCcA40bioUAASYXEAMe+hgeZrjHpAm:/XQaM5sLfvMXCIaioASY0u65Hp
TLSH DCD523D9B9B659B0E433C3B24F83F06DB0297BC18A61DE9B768E6A404C531406C797BD
PeID
Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.O;
.Apj
.7BT
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.O;
.Apj
.7BT
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙