Suspicious
Suspect

2bdd2c9c3f7a7dde06a49b218d1b6fb1

PE Executable
MD5: 2bdd2c9c3f7a7dde06a49b218d1b6fb1
Size: 4.34 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 2bdd2c9c3f7a7dde06a49b218d1b6fb1
Sha1 babe503ad7261fc55a6fd4ea4d459bf8bacc4556
Sha256 86052a8bd3a2a81d8a428785d003adf35aa6a806ea5787ae0d8ec6fed2ccdf8a
Sha384 48a630011eb3fddc2bb51707006baecf4eea5e700e66efcc4247dbb6f1f9e84d192f54950e3e5ee587e31a2f30294349
Sha512 b731d1acc741f6b1f253180d37098aad07c2185561f07ea32e3e2d5363791e6b96f8254b71259380e4aaf0bf2b41e2c6d840d34a78e13679332eb81ddd9fd78a
SSDeep 49152:hZQxplRa1Cf7pk8z0g2eRW2QubYK3VUeup0turA+yR/VMHrt5:hoSmI1ubYKFUpaturAh
TLSH A0167C177D9049A5E499E33589A71291B670BC8C8B3133D72FA0FB782E723E19D36B44
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙