Malicious
PE Executable
MD5: 4155c1a19ad80777f4dcb1dfe994b1a3
Size: 9.31 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | 4155c1a19ad80777f4dcb1dfe994b1a3 |
| Sha1 | 9c109e7b72f7c820e784dc71abcefd914e68721b |
| Sha256 | fe63eabfc2f3a00dcd860858be31ecad76ef657f9811fad182439fb17a22adf5 |
| Sha384 | 91d894305b7dad233835fe1b2cd204ea1396f026c8cdb00940f041c800efcc6a0119c41efabbb44d4d4f8a115c49e566 |
| Sha512 | 2c8425ca6049393a05729101543495bc20bead21b5e1969aaa57d504299c189031a777e799bc88bb0d3fe4844715eeda9130b5e8b90f26f97db2715ee78ba4cf |
| SSDeep | 49152:vxv7quk1r+F3nXQkMZHk3nSXrAYYZPO18Bkd0R3DHyEc5Wr6BfazmCZ/nwUyI:vpgFRxXrA+0R3DHyDw2fatmVI |
| TLSH | C8967C077B4494A4D1A9EE3984A60A51B134BC8D873537EB3FA1BEB43F21BD15636F80 |
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe~T1027~T1055>bin
Shape
pe:exe>bin
malicious
2 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Authenticode present at 0x8DF600 size 8112 bytes |