Suspicious
Suspect

ebcff837ee21b9031bc66b78499d4a47

PE Executable
MD5: ebcff837ee21b9031bc66b78499d4a47
Size: 15.36 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 ebcff837ee21b9031bc66b78499d4a47
Sha1 c1c80394ef072d3f5c5a1a9f969c8fc69d5aeeee
Sha256 c8f376ef6b4cb9e04d2ee53b089da4466aff4678cf122137e3a10d8f2df42965
Sha384 2e3253a1cbe2f599ea64ed09a4421dab7b1139966b6b2b60d88ca1d41b0f45391188e7357708e9f6b8ea0b97e3c27be2
Sha512 6a4a494c72a72d5aebb1ea88d712f4e2b1d93932fe80547464dd69ab02bbc655ead694bb9a2ef6751a9329e21f48bcc3ef1d22c271f7062773b068db1b9f02fe
SSDeep 192:fqHOoLPoHeVQBNBY0fidcj3wJLsN3AAK8BzvTt1NpkAm1paLsehDPP0B46UMBgCc:fKOe2/7c9sN3zfZR1m+RGH6C
TLSH 4B62E6CAA8F66F6CDE4E94703B11F978AD703294862969E3D7918C305DA3AD00524FFD
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙