Suspicious
Suspect

bef027bb9481dc484ddf9744e32e3ff7

PE Executable
MD5: bef027bb9481dc484ddf9744e32e3ff7
Size: 15.36 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 bef027bb9481dc484ddf9744e32e3ff7
Sha1 470ad799ca7241389a9cec8ed5e60775dc223967
Sha256 f8def016e66c73d879b8b05e9831590dafee0d4532f269b6bbdc96a0fc24d7bd
Sha384 ac784f9bc71ad19d0582bca09875cb24da603f370d5f597911d3ed5c65768e51ec7559fa403d0c0797e543b995445240
Sha512 a05091d559b109820ebab312d26465e754cf0a90dba837da19d606e8019d56a9d930be01d4ba95ed010401374dbb760bd5d00d891e95dba7ca943bf25a7c928a
SSDeep 192:fqHOoLPoHeVQBNBY0fidcj3wJLsN3AAK8BzvTt1NpkAm1paLsehDPP0B46UvABgn:fKOe2/7c9sN3zfZR1m+RGWA6C
TLSH AB62D78BE8D25E5CCE4EC0B03A11F978AE7536908665A9E3D7828C305DA39D12534FFD
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙