Suspicious
Suspect

ebcb2338ed5d945809880141332297c4

PE Executable
MD5: ebcb2338ed5d945809880141332297c4
Size: 111.62 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 ebcb2338ed5d945809880141332297c4
Sha1 3cb04b5606e707ef40ab5fd14d839c5cdd58590c
Sha256 b2bbb1bd4ed2f57c525c1cf0ec88ab4e2bed3dc5f3288e77379ddcdfd4a23a1b
Sha384 62de971bdd17a0e5f966a8fc6da38ce698ddb37f375f176bd26baf7fe52512274c42cf7b5bde622781b8d3aefa035d62
Sha512 e1ceea7963ab309b4c924e47f3f5ec747d3040718e9d6ae9e2e41860572cde69a34e1295707a0ce4acdcd62721df30d7f8f02a5f50d418f40b7f5d441dffb720
SSDeep 1536:bmEgTs5rG79jko3IB39fVQks9802NSzdHKOhLeE4Puulz7Eja2:YP/CVg9sNSpqe/4P/3Ed
TLSH 0BB32B37F7A385B8C097C234AAC746B2B971FC190730B56F0284E9317E25A316FADA55
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.data
.rdata
.pdata
.xdata
.bss
.idata
.CRT
.tls
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.data
.rdata
.pdata
.xdata
.bss
.idata
.CRT
.tls
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙