Suspicious
Suspect

baa11e01313ba4da42f8071d7162ab29

PE Executable
MD5: baa11e01313ba4da42f8071d7162ab29
Size: 12.54 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 baa11e01313ba4da42f8071d7162ab29
Sha1 b144a8f4742d9702d41936b78a1163bc7500b1b6
Sha256 ab0cbf4455b5a2a3e392f006bcaf4a4b23aa3628d047c6698ca3b7bdd173f6b7
Sha384 e5d40ae4fedc14be629ff94b0aa05c576bb48ac4e10f4e9e236c7f5aae0eea457fb1a0341fc521c754b5cb46353b23bf
Sha512 737ddd792fd697d6ff78be73c8f0799f4bea94553f77ada3b543068c375e0f7b071a9d3c1e6fe5fb20b1573d4e681091b831cd8d0bd464957e80e5f8961c289c
SSDeep 49152:TFZwcF5o6mAGZHNvdFnoDSmmTWH/UEvDAqRWgQlwdU3+ARRXpTLDAfKDZ3WyjouF:pFm6mAe0DSxS/1QVRXp/ZlY4kDEkR/a
TLSH 63C65B01FA8B65F6E9035831415BB27F23315D048B28DBDBEB583F2AFC776A1183A645
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPeStubOEP v1.xPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙