Malicious
Malicious

5a14763eb6abe01f00b8aaa1326e759b

VBScript
MD5: 5a14763eb6abe01f00b8aaa1326e759b
Size: 7.63 MB
text/vbscript
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 5a14763eb6abe01f00b8aaa1326e759b
Sha1 475b6f4a30d2cf2d54580491a350ec1800700383
Sha256 aaaa119843f6d503c8a70710e7391ce848cdf66a9072ebc1ed2e2b29f4d6ebf2
Sha384 0d9fa5d554b34d90162714a36979bbfe24126beeb3ffd1323793eb0329e039563ae08e354de2f54727b1c97eb0112570
Sha512 4552e27c6bc4c4c773385fc1167319499ed915fd2f69311f19502727c8dcb44cb87aaf251f1e00b976f298448e63cd58a6517a9ae2cb35808fa6519a6276cb0f
SSDeep 98304:2qCzf1aHaiMEh+SXtmRd7X+L/1UNk4cN68RaTf:2JQHa6h+Sd2d7X+D1Z4T
TLSH C3768D17ECA145E9D0AED271C9629252BA71BC485B3123D73F90F7382F76BD06AB9340
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
.rsrc
Resources
RT_ICON
ID:0001
ID:1033
ID:1033-preview.png
ID:0002
ID:1033
ID:0003
ID:1033
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
ID:0007
ID:1033
RT_GROUP_CURSOR4
ID:0001
ID:1033
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055>pe:rsrc>img
Shape pe:exe>pe:rsrc>img
malicious 3 nodes
Path pe:exe~T1027~T1055>pe:rsrc>bin
Shape pe:exe>pe:rsrc>bin
malicious 3 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Attribution
Loader Go Factory-v3 : le stealer livré (Vidar, Lumma ou RemusStealer selon le build) est mappé en mémoire et n'est pas attribuable statiquement.
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
.rsrc
Resources
RT_ICON
ID:0001
ID:1033
ID:1033-preview.png
ID:0002
ID:1033
ID:0003
ID:1033
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
ID:0007
ID:1033
RT_GROUP_CURSOR4
ID:0001
ID:1033
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙