Suspicious
Suspect

b0cc6ee222de3cc56994319396a7b4e7

PE Executable
MD5: b0cc6ee222de3cc56994319396a7b4e7
Size: 6.23 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 b0cc6ee222de3cc56994319396a7b4e7
Sha1 76dda05b1686a3730cad563fecf55bf08a9c8c16
Sha256 5a4cc2b9a285b1d2f9757e55c1635f69c7be71532034c35a68f8a05525b3cb2c
Sha384 cf81ef4d9e44352f72087436c710940312096424990d1225c115f49edc2ef204509f335df4fc43af8cd290f7ac4ddaee
Sha512 838aa81d4d4b3c8181e897b1720ec657ae8e497936e890defda2bd2a14eb567eef264064b4413d28e14355132179a719ef87f145a78eed091fadb4da28f21197
SSDeep 49152:w1ShKAiX1/FvymvWwrPfqG6pAKa/KnY7RcxL358ND2BrMpIgJvN3IlOCfB3HgZNe:AXHM
TLSH 2B56290766C8159CD54BE37184B14E2A26B23C9E5B32778F8E94BEA42F127C56FB5F00
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
[Authenticode]_b44bf12f.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta

No STICH Path has been generated for this analysis yet.

1 structural branch were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 1
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x5EE400 size 8056 bytes
[Authenticode]_b44bf12f.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙