Suspicious
Suspect

2afc1fd868c68bd06b3512795150c2bb

PE Executable
MD5: 2afc1fd868c68bd06b3512795150c2bb
Size: 25.09 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 2afc1fd868c68bd06b3512795150c2bb
Sha1 8ce1bee215b8cd6bb1adeaa349720196d7c3c433
Sha256 e60821e92e144bcff0c29d45caa93afa06cb8e6df789e7251ad161dc88e3dd6f
Sha384 32bb601f87c0c1acc7243d48ff039237c053af2af44c236b70447f4e6128e0ae28160f7674a0e9b43042f722f8571c97
Sha512 efe387ac04ebe6b98529e992fe5760924cebc1841b78408d6c26143c3d75e4c37d2db43ee7c3b9b4cca211a4e147ba3be43bb7c1ef866133f38d6a5ace189615
SSDeep 384:keGyGz9eqQFDnJJjfT6lz+2RHBx4yitPNMFdnKqBVUh:ke8zf2JQRz5jirq2
TLSH 61B2E70EB32744EDC549D47885FB9635AA72BC0848712B3E8324EF710EA5B652D7DF84
PeID
Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.data
.rdata
.pdata
.xdata
.bss
.idata
.CRT
.tls
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.data
.rdata
.pdata
.xdata
.bss
.idata
.CRT
.tls
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙