Suspicious
Suspect

ca170257cbb84ac6a298aba5686f00f8

PE Executable
MD5: ca170257cbb84ac6a298aba5686f00f8
Size: 15.36 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 ca170257cbb84ac6a298aba5686f00f8
Sha1 56375e5231e3750b8712bda94bb077fff6a48c63
Sha256 0eca9404affcb59f4848a32e9dce9da8d2cfcae6c8c6ec5d8edafbc4913919ef
Sha384 d186cf6ed0378714377d926c8baf647d85b79abedf198d2462091613c453e32cf056c5c15437bfa10396324e5a034d3a
Sha512 793fb8e92cc19b9656ac94954722bff6872c109d605e0b32453453bfb20e16bb5d030b5e577c3f8e7bcd44c0cffba1299cc1edd12b34094ab8c8b23ad53c2505
SSDeep 192:fqHOoLPoHeVQBNBY0fidcj3wJLsN3AAK8BzvTt1NpkAm1paLsehDPP0B46UuoNce:fKOe2/7c9sN3zfZR1m+RGOe6C
TLSH EB62B68AE9926B6CCE4EC0B03A11F878AD7136A1566559E3DB828C355DB3DE01024FF9
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙