Suspicious
Suspect

b4b69078539188be988196c90c1a85e7

PE Executable
MD5: b4b69078539188be988196c90c1a85e7
Size: 6.41 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 b4b69078539188be988196c90c1a85e7
Sha1 d586f8da70d82323149be551217f49c60a1e2340
Sha256 22ed18a454b32a12ea6a10d8f2f93569e2d3fb2c6fa2f317446cfe38dd112fc6
Sha384 fe000e8c9b564c2cc3810de2523c0e8f61ea1fb9e222bfe29589a9c7d513be2aa0c0df198f96f5ba3a368a2a00962368
Sha512 15eff109ba0b1f6a201545b2155678ef6a5932060dbd63f3b7a0dc0cb2ab440145e4b6ee27bdceed403132a001cef14ae624eb1763580ab2fffacec40a768228
SSDeep 49152:IHrrafewzFeClgZIiuRe2T2eiO9GoYCOJ10IgGzqzI5KGBeHKcK9KJE/xEa5E7Kb:Ii+sTViaGoYCO9bKGBEQ
TLSH FD568B13FC9219E9C1D9A23189A79252BB757C481B3223C72FA0B7382F727D06E79754
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
[Authenticode]_1b059bd0.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta

No STICH Path has been generated for this analysis yet.

1 structural branch were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 1
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x61D400 size 2424 bytes
[Authenticode]_1b059bd0.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙