Malicious
Malicious

248977b62d5d3c2961fec8e1c2ed5644

PE Executable
MD5: 248977b62d5d3c2961fec8e1c2ed5644
Size: 12.57 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 248977b62d5d3c2961fec8e1c2ed5644
Sha1 7b8ea5455c89d33ced4a58df77ca50e8d8ac1ce4
Sha256 2d3b179077f5a7aea77c70ef7e4219905c2b50680c514e9d3474825fe49f3ce7
Sha384 a9739e9f8720afb926bc53ba7a6b61134458f688dbb449cf93742943bf34fdf5fc6a47aaead8b73f0799e993239652c6
Sha512 c8807325e8aad02dda2ff6a5b5e283ad2ddc05cc1804321e907d0b03a394d7dcc2a46bcba5bc0d92fac425fc59434a0dfef624a1dc51f5a82b2acd17f80112ad
SSDeep 98304:UGsqTIVri2C3jGdD4/LoAr4i3HVd7EqO/:pTx3jUDsdrTeqO/
TLSH 75C65C11FACB54F6F9036831416BB27F23315D048B28DB9BEB583B6BF877691186A305
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPeStubOEP v1.xPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055
Shape pe:exe
malicious 1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙