Suspicious
Suspect

b3c48f5a8763d000800eb876190d1e66

PE Executable
MD5: b3c48f5a8763d000800eb876190d1e66
Size: 12.54 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 b3c48f5a8763d000800eb876190d1e66
Sha1 bb555b328cff3ddb41167669fa00bee213f3fcf9
Sha256 ca37bdbda45187639a14116aa8b6312391d69a4ba425cbe45ccf6344a8dbc7be
Sha384 49cb65639a61d98e7b58a1f8217ea8c5eefc15eff0adb37ba50543454305afff240476f5a9a9feb113216e32389271ce
Sha512 2ba53ff15e042219394af933531c2096de6b83a19c159622bcc8f198592d6f6e7e6c4d938beab7223ba707773eccdb28ec35a49ea6765339ce0ad99b13233107
SSDeep 49152:TXxLFxcRUsGTfTS5L4j2mWSqm/W1sDBKBkQfImdU3c7RAb1vLvktHN63aDjjun9J:BFSRUs6j2h8/uYKAb1o6bE4qrNnEo/a
TLSH 84C65B01FA8B65F6E9035831415BB27F23315D048B28DBDBEB583F2AFC776A1183A645
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPeStubOEP v1.xPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙