Suspicious
Suspect

b5aa92daa2c727fe20e2cbd95cec6e00

PE Executable
MD5: b5aa92daa2c727fe20e2cbd95cec6e00
Size: 15.36 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 b5aa92daa2c727fe20e2cbd95cec6e00
Sha1 d5bff05b114e3960265c02060f3e6117051f0c05
Sha256 a7e67a9d7d9cffe91e2ae75db80abcf2d3fce9d4f6451ca1a61b6db0d298ae47
Sha384 130bd7432ecbb48094ec1200b43e8ddc80e16ca3ed9a4bea8e87dea76b6b20a5704657454025efe3350bf4f961257176
Sha512 a45902043083143f5344d6aaab91a6ef0307af4571bdcb86c15fdedcd6a246522d717f1f0a97927c93471e42baa2a6bf859405bf0f411fb96cd102eacef0430a
SSDeep 192:fqHOoLPoHeVQBNBY0fidcj3wJLsN3AAK8BzvTt1NpkAm1paLsehDPP0B46UknBgn:fKOe2/7c9sN3zfZR1m+RGt6C
TLSH 7962B586E8E26F6DCE4E90703E11FC68B9703690C7A959E3D7C29C254DA39D00535FBA
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙