Suspicious
Suspect

59cf294a12a646f2525b6942a016cc64

PE Executable
MD5: 59cf294a12a646f2525b6942a016cc64
Size: 115.2 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 59cf294a12a646f2525b6942a016cc64
Sha1 19299e8a5ff05e184a350d6e8d35340561d84cd1
Sha256 3cd6e77cb4574fe0f30f3d9cadbcc4d54bfc987f182f9fcafd3a397b4ce368b5
Sha384 ce10e3eb4bdefc2a9bcc37ccb4f761d34ec8e4d8992dadfe055d103a88f7efcd83d325a5572a96f15c53eea613dbd7af
Sha512 4ab1092c49dd9c5209892ce201b2d6a721608dfdc691a0a7692c7c7460d07bccde894b74807599d933dae73c8f8b7ad562a90914ae5f521eafabed8d2c2114da
SSDeep 1536:wrfCgEeo/rG977GcBUOo8axiSO3OUnf0LNSrcHSO7U0YEGou1VEicupH6A2:XWdZTgNSgyv0ZGoQEitpaA2
TLSH 15B32B37F6A3857CC09BC1349AC742B2B971FC190734B56E0384A9313E29A71AF9DB56
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.data
.rdata
.pdata
.xdata
.bss
.idata
.CRT
.tls
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.data
.rdata
.pdata
.xdata
.bss
.idata
.CRT
.tls
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙