Suspicious
Suspect

4ddbf28a267a58017fdafcdc72d04f8e

PE Executable
MD5: 4ddbf28a267a58017fdafcdc72d04f8e
Size: 15.36 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 4ddbf28a267a58017fdafcdc72d04f8e
Sha1 0ebd917dabdf7205bd40bde7ac36af88ac866ec0
Sha256 86163845b1a2468c0ee8b6e56779ec03b028f9e00a9ed168cde50c74ec708828
Sha384 cd46aa8416976cdf081885e54664bd02eecee264650b84cce82dea1942a1291bf0aa39e3da98a6dc4b1d0e38aeb8ca30
Sha512 75f59c02655bc40af7132f3a7a0c48053f23108f840fb80700339715b78aebeab9adddc50fb92c4d8aa9be896ad2c040eaef6d1567f99500d6da4a31064ac7c0
SSDeep 192:fqHOoLPoHeVQBNBY0fidcj3wJLsN3AAK8BzvTt1NpkAm1paLsehDPP0B46UohBgn:fKOe2/7c9sN3zfZR1m+RG36C
TLSH AA62B586D9A26F5EDE4B90703A11FC687D7076D18B655DF3D7828C30A9A38D01838EF9
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙