Suspicious
Suspect

18b2aa5aa9382a211d131add565c2365

PE Executable
MD5: 18b2aa5aa9382a211d131add565c2365
Size: 15.36 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 18b2aa5aa9382a211d131add565c2365
Sha1 97651417214658748ffa5f2c53c6d7ea6d9222ee
Sha256 81a6d443bfa2c96d5f61b9748cb48251395cf68f21df51c8ba6f621eaab54ab4
Sha384 2ee09c611cd885d1a5541dfe9515d987cd2330d4098a090064f39d46daa83f445d2ce412020f254985cba3ed0ce158bd
Sha512 07670e868bdcf15620b217764ff2664ae27f8e86fe0428b81c931c404f1c965a8c9778120bdbf08a0d2f2dfd01fb448424f74d914d75e6941cc1df3c657f9a10
SSDeep 192:fqHOoLPoHeVQBNBY0fidcj3wJLsN3AAK8BzvTt1NpkAm1paLsehDPP0B46Um70BM:fKOe2/7c9sN3zfZR1m+RGlY6C
TLSH 1362E5CAE9922E6CDE4FC0703A11F939F9B43291866599E7DB828C355DA39C04424FFD
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙