Malicious
PE Executable
MD5: 106c6d0f6666522ab7e1ba0f545480e3
Size: 4.67 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | 106c6d0f6666522ab7e1ba0f545480e3 |
| Sha1 | 8320c9d00dfbbe01c9fefbed5a9953830e25b6ec |
| Sha256 | 14b0fdba2beb047d7796352ce56ceabeebb1a70863f29f088a046ca05246196f |
| Sha384 | c00c14bb8a273fbf1237b02f988a1ec2396f66e4f24bf9fda45f41134afeeddca26e5fb882078401ee2d12cb59ba3c37 |
| Sha512 | ee48ebdcfe783b783d2f91bb7cf079fb85e3d5f2819b7dc829c929579660576188dc662a73ca270fa71fee88b0718c7c4594b83db31ea44f23b6349501c86e5b |
| SSDeep | 49152:XEfxT5gzDcw6/JhOI8NTP6+VFe4QFPA36YBs/O9hkVOq9H6w5xRjGaq:Xtct4PTy2hnBs/O9GVN57Rjq |
| TLSH | 20265A477DA12569D866D738E57B43227A60BD8CC73533E32D90A2702F247C1AEFAB05 |
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe~T1027~T1055>bin
Shape
pe:exe>bin
malicious
2 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Authenticode present at 0x471200 size 8104 bytes |