Malicious
PE Executable
MD5: 9bf34cdd5ded1a967fa2bf428071ea89
Size: 5.84 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | 9bf34cdd5ded1a967fa2bf428071ea89 |
| Sha1 | ee6827bf4352771f5d9159df56b14115d738019c |
| Sha256 | aba3cc5c9e97db4eb32c8ad07bf35a9d4f73906daa6a78cb3b5e6bdac3946552 |
| Sha384 | 034a1891c4f8dd994cbed832f534e421c72becb1f5ed3cae0b8d1ece7e713db30f6b7f4a4f9078ae0e8bbdd7d2f42048 |
| Sha512 | a1b59560caa7a93714790a9159974cf76c7777d96700228a5fdf7c3f8e2719e678e6ce8d6de353b7f1c6fe07824a845ca037c08470014a993478fdca211011e9 |
| SSDeep | 98304:SC09WQrNlpKhqlHJJM0BV3m7vt/YiWD027ZDo:S8QrR/aSRD00Do |
| TLSH | A2466B433D916469C856E739E57B43227B60BC8CC73573A32E90A6702F257C0AEFAB45 |
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe~T1027~T1055>bin
Shape
pe:exe>bin
malicious
2 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Authenticode present at 0x590000 size 8104 bytes |