Malicious
Malicious

4320f329048e8d2937b1fe88463fde30

PE Executable
MD5: 4320f329048e8d2937b1fe88463fde30
Size: 5 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 4320f329048e8d2937b1fe88463fde30
Sha1 6009a92db7832d4adf08e3f433ea4f166604b636
Sha256 9097fcd8bba82e4dd6230fbe6cf0e39a2d58b56bb437ff21d95f1e690272c529
Sha384 3889e38a3c956fa4c4af0e461fd4b6f87c4e8fcfd1da6e05e3a66ffc48326043a5e5baaf3695e5111c99940b355949d3
Sha512 f1cc1a3370c5782eedf734c328c92cec6542a0283ea1ab70ed0d6585cf226d988bb61762f7501bba24eeea71c9b463ac3709d08a6ccbc439fd1dd56f5f6f9ab4
SSDeep 49152:uFKpz7i7FAlc03DCBGcm+a1h6TczyJPj4RRHrYvAaaE:uc3XND1aJrCOkE
TLSH 4E366B03EEA548F9D296D73588774242B764BC499B3533D32E60BA742F363D0AE79B40
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055
Shape pe:exe
malicious 1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙