Malicious
Malicious

38f0046416e3fdf6af81b5b3326e2240

Share on LinkedIn
Print
PE Executable
MD5: 38f0046416e3fdf6af81b5b3326e2240
Size: 12.57 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 38f0046416e3fdf6af81b5b3326e2240
Sha1 e08985a27c82d06869335f776041db29b7bc92bf
Sha256 5381889f657250a50a62c8a629ee825ad3249a1ecac97454bbf9f0f0f30e7d6f
Sha384 4c78c0803e1f6de4e4401980806b7e9b65e61503994dbd48c80aa3ce68df3c264b5a8efacab84f9247eb13ac18bd8209
Sha512 a4795e6859bfd2d46e88455e81cd7d5cc11aa4dc16669003cd3c1ff8bd693eada5bef73ac892d310b885d149b0640e7ad0ccec9451883e844b99cf575ecc3556
SSDeep 49152:tsz32ksgc7q7ERu/S955V1XCcONN1Ft9ALrFirmYMduz7VWkP59h+PlBRXJAPzZG:a3Tsa/SrPRCfNTcytrLPD54CrEPO/
TLSH 81C65C11FACB54F6F9036831416BB27F23315D048B28DB9BEB583B6AF877691187A305
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPeStubOEP v1.xPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055
Shape pe:exe
malicious 1 nodes
Name Value
Attribution
Loader Go Factory-v3 : le stealer livré (Vidar, Lumma ou RemusStealer selon le build) est mappé en mémoire et n'est pas attribuable statiquement.
Info
PE Detect: PeReader OK (file layout)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙