Suspicious
Suspect

ca088f0aaed43580fbbc349b9dc8d8e9

PE Executable
MD5: ca088f0aaed43580fbbc349b9dc8d8e9
Size: 15.36 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 ca088f0aaed43580fbbc349b9dc8d8e9
Sha1 9546f46ee900d28e83d8a2ade7a77fcdb96bbcb4
Sha256 441553ee034e036d625b68c0db9d4b1a95c8d3a8b72d2a8f2b811a674fc50437
Sha384 f8a806deb9bb66d655408d24a159f3d8e2f76fba1c52bee774bec194aac2a8f71fa387dba5da8c7e38618e92538a6dac
Sha512 f5812b185546d5c5055f84f3dd66d3b352570e976e6e030874990dadeb56eab0ca35ae1a437b40bda2d40607bb9ceb8811d1acc2e26e6cd7223d81c44eccb9ed
SSDeep 192:fqHOoLPoHeVQBNBY0fidcj3wJLsN3AAK8BzvTt1NpkAm1paLsehDPP0B46U+ZwBM:fKOe2/7c9sN3zfZR1m+RGli6C
TLSH D162C686DD923FACDE4E90703A11F938BEB136A0956559E3DB828C315E678D00464EFE
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙