Suspicious
Suspect

379f08c38cbfa59a7d40acf010225d56

PE Executable
MD5: 379f08c38cbfa59a7d40acf010225d56
Size: 4.22 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 379f08c38cbfa59a7d40acf010225d56
Sha1 c13fd3df72caad31ac7e292b4e69c119d47b92b5
Sha256 90a64141f84104261fbf0c0bc67efa5557c2bf1aee16dcfd997f1da61a42e95e
Sha384 35725f18053530732d48fd891b5e2be3be3702c968ee1e6ca11f443f4d13774aa7165774f6e05443dd60b69d91b48708
Sha512 a9456b85fafe4b03d4f1edb3771b473b2ecf29046b8d9600a388c0164ee043ff155db577c5b27a2a576df7f02719149d65c0a8465e90801ee378d840342b4814
SSDeep 49152:IpOZg6F4ACDiAnY913D4a+EgRKooVmtbgA3lai:IpLWx9JgRfoVmtd3lv
TLSH 09165A47AC9648F5D0A5A73188B742527A74BC0C5B3233D72EA0BEB82F723D06D79B54
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
[Authenticode]_8d90f96b.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta

No STICH Path has been generated for this analysis yet.

1 structural branch were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 1
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x404E00 size 2416 bytes
[Authenticode]_8d90f96b.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙