Suspicious
Suspect

4f9ecf23e48c1211325eec3abb3c984a

PE Executable
MD5: 4f9ecf23e48c1211325eec3abb3c984a
Size: 15.36 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 4f9ecf23e48c1211325eec3abb3c984a
Sha1 c943e9e214eb6c9332464ba5a4a916cf91ccee92
Sha256 5b9537151fc7f8d62004b3c57bbb07b81673833ba4e4aaa2314f53c0f0eb241a
Sha384 aff552c720fe860f2af1a8e2503723a1160ff21e505bfa6d0b4f2c01dcc86c09d9fab4970515c50a26082d9ba8538615
Sha512 dc0009825bb233eea9edeb57772d32db7895095add3f0479bd2b94e169a8da5aba1d0dd3c1f538a0d695a319e393fba5d010ceecfe77e4975a654288961d1cdf
SSDeep 192:fqHOoLPoHeVQBNBY0fidcj3wJLsN3AAK8BzvTt1NpkAm1paLsehDPP0B46UggsBM:fKOe2/7c9sN3zfZR1m+RGtP6C
TLSH 5B62D7AAD8A21F6CDE4F80703A21F978AEB47691866559E3D7C28C305DA3DD00424FFD
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙