Malicious
Malicious

4155c1a19ad80777f4dcb1dfe994b1a3

PE Executable
MD5: 4155c1a19ad80777f4dcb1dfe994b1a3
Size: 9.31 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 4155c1a19ad80777f4dcb1dfe994b1a3
Sha1 9c109e7b72f7c820e784dc71abcefd914e68721b
Sha256 fe63eabfc2f3a00dcd860858be31ecad76ef657f9811fad182439fb17a22adf5
Sha384 91d894305b7dad233835fe1b2cd204ea1396f026c8cdb00940f041c800efcc6a0119c41efabbb44d4d4f8a115c49e566
Sha512 2c8425ca6049393a05729101543495bc20bead21b5e1969aaa57d504299c189031a777e799bc88bb0d3fe4844715eeda9130b5e8b90f26f97db2715ee78ba4cf
SSDeep 49152:vxv7quk1r+F3nXQkMZHk3nSXrAYYZPO18Bkd0R3DHyEc5Wr6BfazmCZ/nwUyI:vpgFRxXrA+0R3DHyDw2fatmVI
TLSH C8967C077B4494A4D1A9EE3984A60A51B134BC8D873537EB3FA1BEB43F21BD15636F80
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
[Authenticode]_bd8a581f.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055>bin
Shape pe:exe>bin
malicious 2 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x8DF600 size 8112 bytes
[Authenticode]_bd8a581f.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙