Suspicious
Suspect

5bbdfa6dc2fc3dcc56627f70247f3110

PE Executable
MD5: 5bbdfa6dc2fc3dcc56627f70247f3110
Size: 5 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 5bbdfa6dc2fc3dcc56627f70247f3110
Sha1 4fbd8f8f79d542c9e51ffa831c2d44a630f458cc
Sha256 702c034d2d1ccfe8726908b256968dec907dbdb1ceb83fc77f25d2c3cd75e6e5
Sha384 4dece84a69bdda8c063211c3f6ad6ce431b432e5dceca391c7210db57edb840b57347d6e1757eb5e68f3ceb40a4dbe3f
Sha512 e0a0265bd034850d038372c36da558432c70d1d74244d2e37fc068b7ab0de232aa82404d5b6676931726d69d1d219de864182321fed56096aadebff394febfd1
SSDeep 49152:uFKpz7i7FAlc03DCBGcm+a1h6TczyJPj4RRHrYvAaa+:uc3XND1aJrCOk+
TLSH C3366B03EEA548F9D296D73588774242B764BC499B3533D32E60BA742F363D0AE79B40
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙