Malicious
PE Executable
MD5: 45bb36c5efe2113d0ab3c72440c5c0b1
Size: 5.16 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | 45bb36c5efe2113d0ab3c72440c5c0b1 |
| Sha1 | 8a4635c218eb497e220ca3c4f6e98aa477143cc2 |
| Sha256 | 202d6cbb3d1c1f639d388b7bcc6c3f24566eb27f2d5e7fc6520b454e5f868d2c |
| Sha384 | d38052d3c44e3e1c4928595888e25ff82265175712a520d72a012926334b0653b89fef3219e88aaabb4384a49450b21b |
| Sha512 | 1a9436a63da0a8be22f82d385fb2a48a1dc69edf340eaccfd6353db57502b51e4389bb22e4e9b1b1da7b53374b74621dc6ebe1a1951a31646073f6c0c6253170 |
| SSDeep | 49152:s/VH67UzaIQ5p/kwzcD4tv4lsJ8naSgcJULPxIf8KA7RkA:sBKV2JMZIf5A |
| TLSH | FB367B17AE9188F6C1A9E335C8B74245BA64BC0D873123D32E61BE782F723D16E35B54 |
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe~T1027~T1055>bin
Shape
pe:exe>bin
malicious
2 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Authenticode present at 0x4EC000 size 2408 bytes |