Suspicious
Suspect

0f977b5d06cfc7113208b7286e23169d

PE Executable
MD5: 0f977b5d06cfc7113208b7286e23169d
Size: 6.43 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 0f977b5d06cfc7113208b7286e23169d
Sha1 9ab6ffb402257824921d5048c92027124248cc11
Sha256 e9ef4ad96d5a883b5df3cc97551e1bf210c40f4ad0acb44f3d3fe7d2a424beea
Sha384 b384b4ed8d81b43819fe956e995d3d57294e283d56c10da6dc18df5d0e0d75f3b11d4e410c3ba90154b487a1845664c4
Sha512 ba544cb34e79a95004fc719fe9c432b7e9141a3024f50167d4043e7c90721247923fcef8de46c04c1c10b66615c54cc1fad2b92fbbc5a364413d9603b7bcdb9e
SSDeep 49152:jrrH14OqOW0ewp+3xDwJLxeDlkdBqd6jtedY+4BzBjNHJ/Cj95E3/qqSv2wLZvZP:LSlLhwTx68wd74BTmEPA2KPgl
TLSH 27563847F89545E9C0AED6318A669253BA617C484F3023D73B90F7382F76BD0ABB9740
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙