Suspicious
Suspect

LauncherV33281.exe

PE Executable
MD5: fe1df8e405bcd3672f3cafbb667831c0
Size: 15.28 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 fe1df8e405bcd3672f3cafbb667831c0
Sha1 e87636567b277c51b7c4fb6e5f71e4f1b8f8997a
Sha256 f4a8e4307944c6decec264820f699e4e4adee02fc71da530ad862dee959528cb
Sha384 150a80e0e498399a26e7a992c6a1509dfef9618ecd46ff1bf3ffe28807fc146ddaf843fff3cab4036e2983f417920dd1
Sha512 87e4a7a8a55d9b9a03e2bba3e283075cdd8acceb6bd8386d7a586414bb8f0cd7534237bb3afad7bd5ce9f558439ccadeadc811396b8e3ab217cf3d96ea056eae
SSDeep 393216:cI0EHldZw7OgWtsKvdJhYZDr7fQCx7VR3QSMMaVTH0D2:cwSOptsKvdUz1xJxjMMEH
TLSH 98F633A64256D15ADDB1503A6BD0E9B99B11BB448C1D030D2FE33ABDF2E52B2BFC105C
PeID
Microsoft Visual C++ v6.0 DLLRPolyCryptor V1.4.2 -> VaskaUPolyX 0.3 -> delikonx64 Themida / Winlicense v3.0.x.0 PACKED sign ASL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.idata
.rsrc
.themida
.boot
Resources
RT_ICON
ID:0001
ID:0
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:1033
STICH beta

No STICH Path has been generated for this analysis yet.

1 structural branch were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 1
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.idata
.rsrc
.themida
.boot
Resources
RT_ICON
ID:0001
ID:0
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:1033
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙