Malicious
PE Executable
MD5: 54eb3cae1e8ec4c0e164ea9e24ef5af2
Size: 4.76 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | 54eb3cae1e8ec4c0e164ea9e24ef5af2 |
| Sha1 | 56e119c62e3631015420445dd488496663a88d35 |
| Sha256 | f1142e07e25d8178dfddd10b442f12a14b920c133f1a64b05a6ad58dd98068a3 |
| Sha384 | d59122497a55a4a4194bf4344ac6af8559b8071149204c205bcec10e6e822fdc408cc84046ab2f92db7b74fd3112390b |
| Sha512 | 4c8b44b404b62cfed5a0167a64d595fe5e9beade06bd5d44695933853d90f0868a9f2cfe0d702418795c5f9d0420b09776d393c5ad8d9f6ce89352e37316f44f |
| SSDeep | 49152:bEC/LsD10OTSJfizBSXsLF2mTrTrEit60ynoTngzqvIZAmOywQprB0:bn+OJizgsR5D1tPyGn76w |
| TLSH | 7326AE07ACA560AAC2DA9739847A16107B64BC4D8B3133E72F50E7B42E737C05E7AF15 |
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe~T1027~T1055>bin
Shape
pe:exe>bin
malicious
2 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Authenticode present at 0x43C000 size 8104 bytes |