Suspicious
Suspect

bff31fb9d59f4f0bf5fdd682ae2399c7

PE Executable
MD5: bff31fb9d59f4f0bf5fdd682ae2399c7
Size: 15.36 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 bff31fb9d59f4f0bf5fdd682ae2399c7
Sha1 02563dc105eb02639a015082b9416b2f0abbac71
Sha256 9591a477149751a97a6a3e219949059af9925809ad80e1dea541985da2a75284
Sha384 2a430ce08c0f73fc2426e6b79ee0a44873cb3e9bf2efdc9251e6ca7f4aa44a6930c9a7310bf0becb3f4a7a407c40d662
Sha512 f50f79b303e38c6ffabafbad8874f7d244d0170f4f437585b14814254c86190fc56e24d8e7feff5581c86bda8a6aee767cbc0a52b988562281172a24e53a8d0d
SSDeep 384:fKOe2/7c9sN3zfZR1m+RGybbbbbbbbbg6C:fKOeOQOzUxybbbbbbbbbg6
TLSH 9962D786D8E26E6DEE4F80703A11F868BAB4769185B659E3D7828C205DA79C14034FFD
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙