Suspicious
Suspect

59f06cb48041648dcc8eb5b4b6555bbd

PE Executable
MD5: 59f06cb48041648dcc8eb5b4b6555bbd
Size: 12.57 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 59f06cb48041648dcc8eb5b4b6555bbd
Sha1 c214749f50cedd9bf61c5bb42517da09e8d01ca4
Sha256 d04443f5bd667bc8a3f4433bb1868011b19b3105263333f80f6eb69e2c0dce8f
Sha384 6433b7bfc3d7668ad127d08cd89d3e95b55bd5cc743e2c86d8800e7c5298eb5ce6621983b1471d00da5f2bac59d47500
Sha512 544f293177c52f781049c0d15cb82edf12b3f694c1a58fde20938815e91ca0d494b6fb2151c7e11a2034956d07d91741666f52ae111e37b5750963cfc512cb20
SSDeep 98304:CGsqTIVri2C3jGdD4/LoUr4i3HVd7EqO/:nTx3jUDsZrTeqO/
TLSH 6EC65C11FACB54F6F9036831416BB27F23315D048B28DB9BEB583B6BF877691186A305
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPeStubOEP v1.xPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙