Suspicious
Suspect

baa11e01313ba4da42f8071d7162ab29

Share on LinkedIn
Print
PE Executable
MD5: baa11e01313ba4da42f8071d7162ab29
Size: 12.54 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 baa11e01313ba4da42f8071d7162ab29
Sha1 b144a8f4742d9702d41936b78a1163bc7500b1b6
Sha256 ab0cbf4455b5a2a3e392f006bcaf4a4b23aa3628d047c6698ca3b7bdd173f6b7
Sha384 e5d40ae4fedc14be629ff94b0aa05c576bb48ac4e10f4e9e236c7f5aae0eea457fb1a0341fc521c754b5cb46353b23bf
Sha512 737ddd792fd697d6ff78be73c8f0799f4bea94553f77ada3b543068c375e0f7b071a9d3c1e6fe5fb20b1573d4e681091b831cd8d0bd464957e80e5f8961c289c
SSDeep 49152:TFZwcF5o6mAGZHNvdFnoDSmmTWH/UEvDAqRWgQlwdU3+ARRXpTLDAfKDZ3WyjouF:pFm6mAe0DSxS/1QVRXp/ZlY4kDEkR/a
TLSH 63C65B01FA8B65F6E9035831415BB27F23315D048B28DBDBEB583F2AFC776A1183A645
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPeStubOEP v1.xPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙