Suspicious
Suspect

ba3dfcb42cddb873d924a5d4fe7f3309

PE Executable
MD5: ba3dfcb42cddb873d924a5d4fe7f3309
Size: 1.39 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 ba3dfcb42cddb873d924a5d4fe7f3309
Sha1 ea6a1b20d47b33e5bc6cf0595ae35df468ae86da
Sha256 4f19cc3d0e2ea6ea7100b6032a2436447d109770c14b78c2f80a664cf01c11d9
Sha384 eaf08318b6a7640ee197b729cb794206d4bcca280198e54055df3b15a34e1463e003199d62f0e8a10be040835816a5e8
Sha512 403c3485f007d5314770c7fff8673604155147e13e2db31a9ae72907723528633c1cae11e042dd333019dd7fc325cde4ab942ef48e975314ebe10ae7c792284f
SSDeep 12288:6s7knsCS/4gTRDFl3NM8bF/hLvZ5ZL4JUNFiyFjjclZhDP4icfQl2qVcBaP:6s7AS/4ilH9M4/1vZ5ZL4JAbR8ZqdQ
TLSH D055FB8EDA8213B5B392F773925AD7325CF6310680728A75CF457E354F52E20A478ECA
PeID
Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙