Suspicious
Suspect

ff2e12ff0b4c15e42fbbfb55683396d3

PE Executable
MD5: ff2e12ff0b4c15e42fbbfb55683396d3
Size: 15.36 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 ff2e12ff0b4c15e42fbbfb55683396d3
Sha1 0b2fbf4dc1719ba5683aa6bd00296efb889a711e
Sha256 e6a912cf4fbadcc6b5d89510c036bf79c326b1d547f5fa714360daec9301e142
Sha384 b6cf3d7bada8f6bae0321e0d8515b4ff803762174fcf3f8565913d20c08cf5dc8980bc95ceb38e472989828f2ccd22e2
Sha512 5fc63b42db6cbf020dd87b30052bcf72458dfffc9f2c56c2b68961a92d822d469e9696643ff0486d9e12a63441b56af81f884a215d35bca10a0e7140af9587bf
SSDeep 384:fKOe2/7c9sN3zfZR1m+RGmnNNNNNNNNN46C:fKOeOQOzUxv6
TLSH AD62E78BD9922FACCE4F90703A11FC68BD7476909A6569E3E7869C304D63DD04424FF9
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:dll
Shape pe:dll
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙