Suspicious
Suspect

56f9dfa5e686cbe46f2c3d8ce612b487

PE Executable
MD5: 56f9dfa5e686cbe46f2c3d8ce612b487
Size: 15.36 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 56f9dfa5e686cbe46f2c3d8ce612b487
Sha1 be9200264bcd97f0f6edf3fcc4cc70879f49f158
Sha256 91a64caa9df02f52c2c35a7304e4e9b828b1fb41daceba133b3890d16a94af31
Sha384 8c7bd6062e3f49bdbb6e79ba71e6bee30b81bd2bdc80765e84893b6ee6a96042f4bef62fe446c3ee4d4b300fa9ec596f
Sha512 6e05e874be5dbd1f81607f8d4f56094731b9453f7405312dfc5ee731401e06ca773a101acf66b060356a1b441deb02dda7e358952ca4592e58bf6dbdad72c576
SSDeep 192:fqHOoLPoHeVQBNBY0fidcj3wJLsN3AAK8BzvTt1NpkAm1paLsehDPP0B46UGNBgn:fKOe2/7c9sN3zfZR1m+RGR6C
TLSH 9662C486DCE22F5CCE4F80703A51F978A97436958A6599FBD7828C305EA3CD05024FF9
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙