Malicious
Malicious

9bf34cdd5ded1a967fa2bf428071ea89

PE Executable
MD5: 9bf34cdd5ded1a967fa2bf428071ea89
Size: 5.84 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 9bf34cdd5ded1a967fa2bf428071ea89
Sha1 ee6827bf4352771f5d9159df56b14115d738019c
Sha256 aba3cc5c9e97db4eb32c8ad07bf35a9d4f73906daa6a78cb3b5e6bdac3946552
Sha384 034a1891c4f8dd994cbed832f534e421c72becb1f5ed3cae0b8d1ece7e713db30f6b7f4a4f9078ae0e8bbdd7d2f42048
Sha512 a1b59560caa7a93714790a9159974cf76c7777d96700228a5fdf7c3f8e2719e678e6ce8d6de353b7f1c6fe07824a845ca037c08470014a993478fdca211011e9
SSDeep 98304:SC09WQrNlpKhqlHJJM0BV3m7vt/YiWD027ZDo:S8QrR/aSRD00Do
TLSH A2466B433D916469C856E739E57B43227B60BC8CC73573A32E90A6702F257C0AEFAB45
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
[Authenticode]_50d8874b.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055>bin
Shape pe:exe>bin
malicious 2 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x590000 size 8104 bytes
[Authenticode]_50d8874b.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙