Suspicious
Suspect

0ff1a12321c551f16dcd1ee77de2fd63

PE Executable
MD5: 0ff1a12321c551f16dcd1ee77de2fd63
Size: 3.58 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 0ff1a12321c551f16dcd1ee77de2fd63
Sha1 9c24eb1ad51ae2b419280b19985b3e0c77b7a216
Sha256 d15cea4f9adf09fac25e8073340f59adec3d9da2aaaac7fd2cc24979f683b915
Sha384 8852ca40f6230502dbfbec9f65e8388646c74aadebfee3aff0da6d230a22befe2880de9ad611e2c99dbe3b9aa3046c72
Sha512 9417b5d2cd34c9585d3913be8e21639d031b1ac5a039af6497fad3df84a0199965cac4b300c1630cee4250b9a6466047dbdefad8fb26675180cc9e2b415c2de8
SSDeep 48:6IZUBQYxZul2EywS6DXoBC8jk7QLzgzIzQz4zAzo157D9N9XM/geu3ahr0/x:2BQMZ7EywS6D4BCG++D9vXeg
TLSH 4771B54160545AF2D98DA3BF8587B899FD4EB248A2C84B0B0798D81A3F7547BB0D9613
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.pdata
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: t$mn
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.pdata
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙