Suspicious
Suspect

b5f04109c8f31d80a0c9d03707d54859

PE Executable
MD5: b5f04109c8f31d80a0c9d03707d54859
Size: 15.36 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 b5f04109c8f31d80a0c9d03707d54859
Sha1 42dd54c88b76f4896c274b119c0d42b599706676
Sha256 0859abb4b2ab55f9ac68303a58c087408b59c2eb5f49f43101a378dfc5d340f9
Sha384 4f831065df1ede42f7f718ac998946e197cf9e50f051465894e3aa22b672f02f78dc73c274d3f54dfa844248ac592e70
Sha512 dbfd4e4108ab70a6688f02de700ab331c75ef3cf31a7cfa1bf3dda6197e06b5241a6983bc28ecc1ff96c50581a6f1e29f5fd3e8cf06c88f6f60da1ee594609aa
SSDeep 192:fqHOoLPoHeVQBNBY0fidcj3wJLsN3AAK8BzvTt1NpkAm1paLsehDPP0B46UfeNBM:fKOe2/7c9sN3zfZR1m+RGHN6C
TLSH 0E62D8D6D9A22F5DDE8E80703A51F9796E7136A086A59AE3D7828C304DA39C04434FFD
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙