Suspicious
Suspect

ed8ccc6201e27a8f7239085197f053e3

PE Executable
MD5: ed8ccc6201e27a8f7239085197f053e3
Size: 2.97 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 ed8ccc6201e27a8f7239085197f053e3
Sha1 c7f06f749c0bcb9d9450e8060364ccd6cc95f0fb
Sha256 55de1db308d41233fc40f04dff64370a543dab057f5a80f625c4792cb4eba975
Sha384 5548e2333b79ed587d2bce33aea639c333a8e58fc2d2b4480e2417a86b7f9e97fd4b8ae10417c24734adb981fa695ef2
Sha512 8ecd3b90290b025e57b5d19d485c9fd4b1fa47fc767ab474e53c7c73536aaf5774675432acef85d667229247f4699cee83908f501dfbb5d228f105efd50dbbed
SSDeep 49152:vSz2GIT+caIEAmC2IJRoABMLSw0ishEU/GTwMsWF0hACm4SX/BH9xrEtn:vq1WaI1mC2IJRRESwNxWss/lVSX5H9xs
TLSH 34D523A9BCF32538C87BC3B79ED2F46DB2193B858B714D9676CC1A504E128685C39339
PeID
Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.]j0
.~6s
.w2D
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.]j0
.~6s
.w2D
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙