Suspicious
Suspect

b8788234a4975fc5009bf927b3bf5a2b

PE Executable
MD5: b8788234a4975fc5009bf927b3bf5a2b
Size: 13.82 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 b8788234a4975fc5009bf927b3bf5a2b
Sha1 e16a015a28b71c26bc32c92854733b041aee14a8
Sha256 4b660a310fc1125a079f8154a86edd0d43501edbbc4bc759dd55f1d4fd0c6d40
Sha384 9352294b9422e13c8ea56b1df2a941e932e6c35d0e5e1eee962fd1e85eb03b4ab1a713e8ddb338ec240f8baff70ab37a
Sha512 b043454e42a919e47bb384bffecc344ab28ece35fd30940d9f59f6b8c90c56d6a8aaf1cd0f403812b0597ec86d489980586367255b11aac7cd8ea0806cda72ff
SSDeep 98304:thpJ5exQ0g8yjoNnQScU4mYFTCD42+G32GgGvjFdJqEWm:PdCQ0xykNnC1XzG329o3W
TLSH 12D63987E96555E8C1ADC136CA269563BB313C894B3033D31B50FA292F77BD0AEB9710
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙