Malicious
Malicious

38ff6ce4d92bf553e38a604bda115531

PE Executable
MD5: 38ff6ce4d92bf553e38a604bda115531
Size: 6.53 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 38ff6ce4d92bf553e38a604bda115531
Sha1 c7a09dc66f31e40dc0279fea63c51fdecf63a606
Sha256 b6ce8cd348a2a268b298cc9178722842dff3d79129cbca492525cc8f5c30b293
Sha384 4ca5a37fd98040c5a398fa0a8eeff061ff8d83d563bf110568b6934f054bc917d582cd783dd0f7db96f4e32dd20ea304
Sha512 3962779664b4c8149969c84581597ff3748075cd57208167f9fc92ac8b43970233e45c8940543a8522056e321e486949a00149d922daf181f61aecc372c8b1b2
SSDeep 49152:TZaDyp7y66n5bwDOH816TPbEt2JUs8Gb:TNGJc16Km
TLSH 16669E07BCE149EAC499523185BB52A17B35FC190B3223D72E80B7382FB67D09D7AB51
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Overlay_53bd28e8.bin
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055>bin
Shape pe:exe>bin
malicious 2 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Overlay extracted: Overlay_53bd28e8.bin (3269632 bytes)
Overlay_53bd28e8.bin
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙