Malicious
Malicious

a8fcb0220dc8479cc63553154de03a2b

PE Executable
MD5: a8fcb0220dc8479cc63553154de03a2b
Size: 5.5 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 a8fcb0220dc8479cc63553154de03a2b
Sha1 79324d4c3e5be635d4e467b911a816318ee91726
Sha256 071c66484ae758686ada6db2ee7d2d646c252c8fd9d99fafac1f8f9e758ce588
Sha384 82bbfd97fe80a063951daa5d3111811458b2e4628461e70292b7987821eae073c5976e1e0f3a7499c5ce38d6c52e9a60
Sha512 a3afd662e8a2772fd622852e454efb9ca9f96559e961d70f03178264bd68ce280228d1d718ab8b826f331f41c5043d2ba93d8e03706f6f199a65daed03207f24
SSDeep 49152:AyjC9GStzPjSHKMWTI6uMxMNv5Tue7Ac/DG2pVwS3uCyG:/jAMDhEc/DGf/G
TLSH 9F462A03679415A7E154C338627A6B11ABB1FC2CDB3776C74D81A2EA2B17BC297F1B04
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
[Authenticode]_7938cf8a.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055>bin
Shape pe:exe>bin
malicious 2 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x53BC00 size 8072 bytes
[Authenticode]_7938cf8a.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙