Suspicious
Suspect

e5ef7921b03893aaffbe7affed4855bc

PE Executable
MD5: e5ef7921b03893aaffbe7affed4855bc
Size: 15.36 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 e5ef7921b03893aaffbe7affed4855bc
Sha1 c78df398a8febb2187d66da38932299f20c9beee
Sha256 11a38156dd364779a88f4e787e293f9479b3bbe2d56e1841462420b99f6e4c13
Sha384 27432bbae9ec6a881649817241991ed76f48b2bb08134b5a4bb34b7ac8608619fe23680ead8e7b8a2e2db88b4f8bf032
Sha512 a089604ca039594d5d826de5edb76c75a2952b526ea31b7d4ac5fbae1eac14d4cdecf58a69b78ab17adaa36b2397af2d71a43f2c8d9b7c4d45c814f6e4476932
SSDeep 192:fqHOoLPoHeVQBNBY0fidcj3wJLsN3AAK8BzvTt1NpkAm1paLsehDPP0B46UW/eRe:fKOe2/7c9sN3zfZR1m+RG0R6C
TLSH E962C686E8922F9CCE4F80703A11F9387DB476958A669AE3D7828C7059779D04034FF9
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙