Malicious
Malicious

2004d8d9525445445121fb47bbbf4b00

PE Executable
MD5: 2004d8d9525445445121fb47bbbf4b00
Size: 8.6 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 2004d8d9525445445121fb47bbbf4b00
Sha1 39f1f47a0987b08dbd423eb5642163d97d541a66
Sha256 67f1a3186b9c1e826ab34fb4c18a6a9c85bd5986e1214f80004c07c57cbfaa49
Sha384 223bd5f1c459eac615d842ed6fe52c9065abb1d2b1b8e196afd2a14a63bf1b15f6dbcf59158d8f68f87d637443aaaff9
Sha512 9807da3f94a5c9e362ea91a412f67e981fb7c868a227d640d5b30e1992c930dd0862e39cc9a1ba9f5092a1bc96ddeffff7d25d11170c2f39b240649205a998a2
SSDeep 49152:2b9f+5lwvpmGQW9Ic/ENxld5if/daIuZVWns2mkRbW0xG9fkv+KW19dU1ubjogpb:2566GoENOIke9T59tjo+GIY9zK6
TLSH EF865907799151B4D4A99E34C13EA2637B257CCCC73933A32E506A741F797E0BAB6B08
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
[Authenticode]_2cf3c516.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055>bin
Shape pe:exe>bin
malicious 2 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x7E4C00 size 8136 bytes
[Authenticode]_2cf3c516.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙