Malicious
Malicious

3d305fab02241ac166687d9e3b1e1705

PE Executable
MD5: 3d305fab02241ac166687d9e3b1e1705
Size: 5 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 3d305fab02241ac166687d9e3b1e1705
Sha1 48509b8456af7e787b098b157746489f48213095
Sha256 e686c2dcffe94fb122df2e81debdab3e3a973c9a3bfcd06854d2a99dd5605cd0
Sha384 655233769e7b1e3461a016a1a625a315a106e59ba5f3a4c5dee6db97446e9653288b931e058e104ef5059fe6b86591fe
Sha512 bf56891d1aacdeb7138df01d9d7f59b41cadc0f9f022061a56d7632a49ae04edaeafd52ca8db80dd8ad01ff849ac9bf4b9f4b7e8a8a99dc32f5d4cab1fb19c9a
SSDeep 49152:uFKpz7i7FAlc03DCBGcm+a1h6TczyJPj4RRHrYvAaa6:uc3XND1aJrCOk6
TLSH 5E366B03EEA548F9D296D73588774242B764BC499B3533D32E60BA742F363D0AE79B40
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055
Shape pe:exe
malicious 1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙