Suspicious
Suspect

a5fd1dda9fd9746a6b21dcf2a6ee2160

PE Executable
MD5: a5fd1dda9fd9746a6b21dcf2a6ee2160
Size: 1.14 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 a5fd1dda9fd9746a6b21dcf2a6ee2160
Sha1 cca8db27a784908e40544eda5f3d327e1bd1d088
Sha256 0b9186fa35770dc3b4b121a35551d49c6d623c0cd8dafbc5bafbce2d5bdcd7f3
Sha384 90b30405fcba9c399f0dface2412cb750922a2346a6889a08fcfe7a6aa89edb10ad953c105aa15f32c5f0a761820a168
Sha512 34471cf4bfc7284583d83b469ea7fadfff246eb1c64a4ffa71790f0d557aa515b62f616cd5f14410e5f8335f562c16ba6e906d14a7e345f2ef0bc91bd3d312d4
SSDeep 12288:igbs/m0E54jwaFXGc8lEBBBHGBKq2IZwDYIvfqItNqdg:5bOVE5ifGPRZwRvf3fd
TLSH 6F357C83E7A385D8C116C9B5534BF137F9627C8E4B157197ABC41E633A67BA4E22CB00
PeID
Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.CRT
.tls
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.CRT
.tls
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙