Suspicious
Suspect

feaff473d5458aacc8d6f7bc20945ef5

PE Executable
MD5: feaff473d5458aacc8d6f7bc20945ef5
Size: 15.36 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 feaff473d5458aacc8d6f7bc20945ef5
Sha1 c5ee7f5020bc21250df5fb1c538f82be072e6b44
Sha256 f1bb384fba69a7b1c514575e57628ba8b602efcacc265d08a4ff0719be2e0363
Sha384 2becd1708196b8d5ba9ccb578a9465dfc1b628962463dff9f6c216ebfde2d305c4bf231838df798b5911937ff3b703af
Sha512 9c553c9d951a57a20afc6f413959f08a8a535f1bb60a1f8fc58e8ef32a5a4e76425118aa6c6fbe01523fa030408b69bceab97c49d4b6ef56306cae168e0f5326
SSDeep 192:fqHOoLPoHeVQBNBY0fidcj3wJLsN3AAK8BzvTt1NpkAm1paLsehDPP0B46UCBgCc:fKOe2/7c9sN3zfZR1m+RGJ6C
TLSH 9E62C696DCE26F6CCE4F80713A11F868AD757791866659E3D7828C2059B39D04038FFD
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙