Malicious
Malicious

2e4cb2205425cb606a0bdc0a2ecc3abe

PE Executable
MD5: 2e4cb2205425cb606a0bdc0a2ecc3abe
Size: 14.44 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 2e4cb2205425cb606a0bdc0a2ecc3abe
Sha1 07d90b08968bb60338d47d27e4b7bbb60e4b3137
Sha256 c381052b7db304df78fe1964ddd318b1df808f89f81ea78bf63c8e4927356985
Sha384 c4b099990481e0e9f257cd0c04e9c0537d744f9644219874368d3c8bed125f886da42a882eb81257c734f0ab4db4cb16
Sha512 22d1b27019a65b429a066599a8f39382eb99b6773796d7e6e6ab7301edee92af867985ddf9f03b4782881f171d651bfefa80e8237ed7a80eb14e8bde5ee7c94a
SSDeep 393216:LP1g0wuvlwSICkasXw05GrBSy64lweu3X1E3QGZTkR8tUuTdPC8PRJjPbNkgAEm4:jXB
TLSH 59E65B436A4244E4C9B1AF39C37752E1BA6CB88CC73137B72E64D6B42F223D1A979744
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
[Authenticode]_863e6b79.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055>bin
Shape pe:exe>bin
malicious 2 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0xDC4800 size 8088 bytes
[Authenticode]_863e6b79.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙