Suspicious
Suspect

5ef1ddc496fb7a351aa666743d23d4c7

PE Executable
MD5: 5ef1ddc496fb7a351aa666743d23d4c7
Size: 15.36 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 5ef1ddc496fb7a351aa666743d23d4c7
Sha1 18d192145509a176f266fb38c577e632df4a2647
Sha256 2bc2201b9c27e207b1f70db6e8250c5456f08752130bad1db8affcce758e0b08
Sha384 e0598317b181ca673717f3283ca0f6947b9aeac57a48395fd8054594529c7611bbb0b443f933a2dc31b2e29ceb26139e
Sha512 537fc0e2d3cc31ecededef502f311f0a6f20bb7da3f7544dbf23c51b57b3ee0f39df626785829ea2ca92a43c0001f135af5e4bbd9923c34a4067ded968b4acd0
SSDeep 192:fqHOoLPoHeVQBNBY0fidcj3wJLsN3AAK8BzvTt1NpkAm1paLsehDPP0B46UISBgn:fKOe2/7c9sN3zfZR1m+RG7S6C
TLSH BE62B5DAE8A26F5CCE4E90703E11F978A97137D4866959F3DB829C3059B3AD00424EF9
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙