Malicious
Malicious

77024b93ec1c38e8a9226d2f53d881a7

PE Executable
MD5: 77024b93ec1c38e8a9226d2f53d881a7
Size: 8.64 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 77024b93ec1c38e8a9226d2f53d881a7
Sha1 b97035b8b38b523815f7761e3791efae8cb06d4f
Sha256 fd560206e680213b10844e04af42c842ac0131ac41d645c417a7749b8c5ed96d
Sha384 bad2264a0ec2eb8837243311feb2fa1780f0f46295dc24449776356718c3ceadfdd7b83282136836b6db07b06db71f6d
Sha512 3616a6a29fd58cf216f25cda4f7ed902784c054cbf46bc88659845bd61e33e5cd26523d348367f9415bddb4ed6cbbbc2ed0400fb1e60fe7ec19bc045322a4c40
SSDeep 98304:8r1YTZYEpdxNdH5mSLXOEHGwcIje4UELk:8onDxN55mSLOmDI4t
TLSH A9964A17ECA544E9C4AAD53189229153BB727C491B3123E73F90F7282F76BD0AEB9740
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
.rsrc
Resources
RT_ICON
ID:0002
ID:1033
ID:1033-preview.png
ID:0003
ID:1033
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
ID:0007
ID:1033
RT_GROUP_CURSOR4
ID:0001
ID:1033
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055>pe:rsrc>img
Shape pe:exe>pe:rsrc>img
malicious 3 nodes
Path pe:exe~T1027~T1055>pe:rsrc>bin
Shape pe:exe>pe:rsrc>bin
malicious 3 nodes
Name Value
Attribution
Loader Go Factory-v3 : le stealer livré (Vidar, Lumma ou RemusStealer selon le build) est mappé en mémoire et n'est pas attribuable statiquement.
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
.rsrc
Resources
RT_ICON
ID:0002
ID:1033
ID:1033-preview.png
ID:0003
ID:1033
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
ID:0007
ID:1033
RT_GROUP_CURSOR4
ID:0001
ID:1033
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙