Malicious
Malicious

b4464a4f965869188e5bd1043c18ff59

PE Executable
MD5: b4464a4f965869188e5bd1043c18ff59
Size: 5 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 b4464a4f965869188e5bd1043c18ff59
Sha1 4da79e73ee604748438c7b21158b707e03229e9a
Sha256 35916e16c0296d4d2d74927710e7a29796a1aaca98bb37225b7265696ccd8200
Sha384 568fc3c7a9dd15daac3707d73eefeacc16dd1f15e5b2de01edbfd6ef798e914551c2ef66ff6ed462179efe42a4927f9d
Sha512 8121d80fcfe7c2f367b0f7dea7a449ad22a04a6b7b558701440abe1cfa36d869fe664bce1e5a3f33e922ac3a703a0afee714931c4758258cbc76757c2f3e96e8
SSDeep 49152:uFKpz7i7FAlc03DCBGcm+a1h6TczyJPj4RRHrYvAaad:uc3XND1aJrCOkd
TLSH 3A366B03EEA548F9D296D73588774242B764BC499B3533D32E60BA742F363D0AE79B40
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055
Shape pe:exe
malicious 1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙