Suspicious
Suspect

ca5a21f9cd1a68cd3e6e4cacb6e91a84

PE Executable
MD5: ca5a21f9cd1a68cd3e6e4cacb6e91a84
Size: 15.36 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 ca5a21f9cd1a68cd3e6e4cacb6e91a84
Sha1 7f7c44eaec872be344d8d1fe2ab9086af461eb4f
Sha256 d8e7372f05d744bb14019c6420219d085d7ccb29c8271394dd8df5b497eefb87
Sha384 6bd343b247926a971ac9ab106a4e83fa808d27ad8616a8dfa9d37682999c29ed1a2973a6e208a0657510e61bfa328989
Sha512 d999159a92849335df396b7477a976ec19440405b3ad61cffe9cec1872f0fb88da38309687e208fab9c24d185d84652338a73df15fed99e5a5556e250ff2ed71
SSDeep 192:fqHOoLPoHeVQBNBY0fidcj3wJLsN3AAK8BzvTt1NpkAm1paLsehDPP0B46UFyBqe:fKOe2/7c9sN3zfZR1m+RGBY6C
TLSH 3D62C586E8E26F6CDE4E90703A11F868BAB0769186655DE3D7829C305A739D01434FFD
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙