Malicious
Malicious

981ab1ef2193514f56e37e8ed322837e

PE Executable
MD5: 981ab1ef2193514f56e37e8ed322837e
Size: 7.08 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 981ab1ef2193514f56e37e8ed322837e
Sha1 b23111ec2f200f9797ae7130a323e70685a24885
Sha256 7c83eaa84cbf4f5bcde0d3d7c636b817e710fc33dbe0ba69f912f906bf93bb9f
Sha384 451f638a4d360f23eb3abdfef553aac7ded317dda30f08b72962dcab3a7cd9bd9039aca9bedffc60340358132f28aecf
Sha512 29ae1d16d827b07c0bc9480dca72de544408ace435268519d9bbf543ae848bfebf8b6a7a56303132e34364ab849cb76a4d276488e8d9c56d7297dc0a64f1741f
SSDeep 49152:4/TRQOefUFeN2EQr/2uPXjaECBF1tG4QaTzdttttattta87PGA5oUmlfB6W3Ew5v:4sQjaECBF184QtXo7lp33HBb
TLSH 8B666B073E9181B5E05AC63995BB5252AB30BC0C9F7673D32E50B2751F723E07AB9B48
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
[Authenticode]_37a8e3b8.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055>bin
Shape pe:exe>bin
malicious 2 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x6BDA00 size 8112 bytes
[Authenticode]_37a8e3b8.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙