Suspicious
Suspect

4ffeee5993c69e77a2553981ee2f9ea0

PE Executable
MD5: 4ffeee5993c69e77a2553981ee2f9ea0
Size: 5.99 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 4ffeee5993c69e77a2553981ee2f9ea0
Sha1 b149646eae65f70490466a0b196f659a192f8e8b
Sha256 2ecf04b3f001039184d841dd067d6e47bf192047ffe6b92c72a9d57bda6c6afe
Sha384 53277d5f092b6af04e78deead6c2ed080a24d6aa55c8f71859abc339495f5470cb8abf1d5ba8c98075c5f6efe7b94e3f
Sha512 f86ee0a877cf103892d5997460d1fdf03b5b619c73d09cb88f6983b741903c691f980bc04fdb511a3bc8c0c9671eb32be219cd84e47f2c9f58dbea55625ca2b3
SSDeep 49152:2uOVA6kgGE2C8rb/TTvO90d7HjmAFd4A64nsfJPsuLplRcJ0HjEUbP0geMtD3q3c:XgGEhUS3q3DvY
TLSH BC564A17FD6510A5C5EAD630C5764212BA30BC894B3433E32FA2BAB82F767D05EB9744
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
[Authenticode]_8c351003.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.idata
.reloc
.symtab
STICH beta

No STICH Path has been generated for this analysis yet.

1 structural branch were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 1
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x5B3800 size 8072 bytes
[Authenticode]_8c351003.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙