Suspicious
Suspect

2ffbff3ff5b561d0f54504feb5727546

PE Executable
MD5: 2ffbff3ff5b561d0f54504feb5727546
Size: 15.36 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 2ffbff3ff5b561d0f54504feb5727546
Sha1 8bd98bb4b5db0ef828fd9fc5856b6ce007bfcf4f
Sha256 e5ced85c3d7fd2f78e042dc587d243b99aaac918a44c08352cbac9b248ff8762
Sha384 28cbba2fef3683541d862282c226323bd15eebf5f03849d2fd8a9a3857e3a30fcf6612d37e6ac3576d4c4272e59d68be
Sha512 bfee3c5f0f15cf333a3b8cb03cc7690288ed012c01cedebb462772f901f135cb797c31ebc801ab3ede406a669067115a3f8abf2e62992064bf8731e7b6fc791c
SSDeep 192:fqHOoLPoHeVQBNBY0fidcj3wJLsN3AAK8BzvTt1NpkAm1paLsehDPP0B46UVBBgn:fKOe2/7c9sN3zfZR1m+RGQ6C
TLSH 0362D786E8A26F9CDF4F90707A51F838A97476908A5599E3D7E28C304EA38D14035FFD
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙