Suspicious
Suspect

8bbbf6e8040d137c142bbf1775be770c

PE Executable
MD5: 8bbbf6e8040d137c142bbf1775be770c
Size: 5 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 8bbbf6e8040d137c142bbf1775be770c
Sha1 0d5f36f78a1cbf922f9e33c348c5693e93e24c06
Sha256 db4a45d88c943be3f60bf216bb6ac8a2d3b70dfa13e9669e402f11e2aaea1b74
Sha384 c16848aee7c83e339a65176470c67a723744ab6a8793c305983b3c08676b2c53409e14aa57da2f1a2d7ccec55332397f
Sha512 1d4f506f16ce0f3e92dceb3aa4698ad12572beabfd370f5f55c042584323fd8d85ea083b4e8c51ebcd736d65be51fe12ae04496389007bb594f4b53f8fb8bfca
SSDeep 49152:uFKpz7i7FAlc03DCBGcm+a1h6TczyJPj4RRHrYvAaab:uc3XND1aJrCOkb
TLSH 52366A03EEA548F9D296D73588774242B764BC499B3533D32E60BA742F363D0AE79B40
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙