Suspicious
Suspect

aad294780651aa303040f3225e7aba3b

PE Executable
MD5: aad294780651aa303040f3225e7aba3b
Size: 3.01 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 aad294780651aa303040f3225e7aba3b
Sha1 a852e84e13481d98baf97449272e2b081a6d3984
Sha256 ee981b6035362e01d50684b36e9db1e4a5cc97abe6414adecc866ffb93313328
Sha384 cc627abdefd59ed06ece25f31ec02b5785dd642ddaeefbba6c135ac087dc82686234f8a5833f79f596f29fec746ef2c7
Sha512 eddca604312544b1b5519fbdbbf16f7440848f507a5e6b68e209411149921936bf03307c1c6b58f94b1b3ea00c52a31b82fc46c2dbc321b88bf6668377c77e08
SSDeep 49152:zVnSkiQ7XttncTtWcWg/TJBiOImUIMxF09dNH5FgPBR4SchjsoIaNLg7:zz3rDcK6BXiQd55FgPBSBXIo
TLSH 26D5226AFC823EBAD436C3F71693A56DB1597F858A609C4E76C82B005D1292D3C3B335
PeID
Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pwV
.)P>
.&Pl
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pwV
.)P>
.&Pl
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙