Suspicious
Suspect

ffbf0bc4d42e2535df730b56d475f1b5

PE Executable
MD5: ffbf0bc4d42e2535df730b56d475f1b5
Size: 3.58 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 ffbf0bc4d42e2535df730b56d475f1b5
Sha1 098daaa6d4304c3ad2e8ffc1fa084680d21b3310
Sha256 7f47e02e297a35fabb1fb2a2e195e3dae5ff8ecfe7b201fed189d14e54124d2e
Sha384 45f704f3ddacd893c37f457d852785e90ced313d31d2c6d482e50ed2f4559a1709f06b010e944d8b2d1e0116bc4d5e76
Sha512 ab4cef2186a4df1eb4e5234171570b22ab0a9c5fd6d60ff336696add03830c4320d96e5c31c0acf172980f881d17ea4a965e4320a12e785684c4bb497222d6ff
SSDeep 48:6IZUBQYxZul2EywS6DI8jk7QLzgzIzQz4zAzo157D9N9XM/geu3ahr0/x:2BQMZ7EywS6DIG++D9vXeg
TLSH A271B54160501AF2D94CE37FC487B8A5FD4EB248A2C80B0B0798981A2F7507BB0DA613
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.pdata
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: t$mn
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.pdata
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙