Suspicious
Suspect

e2f78f38067c9e963a736bb890656f49

PE Executable
MD5: e2f78f38067c9e963a736bb890656f49
Size: 2.92 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 e2f78f38067c9e963a736bb890656f49
Sha1 3f3c4bd2618d17a91990025c080d80a63eaedc07
Sha256 169d626fe4ae8a7547b6744aa44d08397840c2b972a50a6713128d1d96bdbec5
Sha384 ba494176829c0764d60f6719443be7ded7dcc24a3c80a28c868cb5dda0dfecbe20e7c66f64c9388c3d3416034ca79146
Sha512 60f0d298dbc0254f6956da054a637dffb51c32b21d043de9f1988b4484a2300e5c46e7b4ec33ff7a3c9f07719a2f34053b108c15c6c05e6fff83b9d454528f89
SSDeep 49152:U/Z/p4XS14yGLHGIhYQ78Be/k+q97mAKYXGyf0CYDJ3cTqruby:UhUZXXY009nmrxOquby
TLSH 7AD5238AB5F61971D433CBB29F82F06E716E77D487618D8BBB9D28008D13198583B376
PeID
Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.CRT
.<L^
.,Y1
.b'{
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.CRT
.<L^
.,Y1
.b'{
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙