Suspicious
Suspect

bbf695c86f8e0ec38f0630b33766c655

PE Executable
MD5: bbf695c86f8e0ec38f0630b33766c655
Size: 3.43 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 bbf695c86f8e0ec38f0630b33766c655
Sha1 a87d71802a427739e07f1cbb4c289491eb3161e4
Sha256 b60ad1eee8bc9dcd7c721e381a095973c1aab6eb66f594663548f61e79b5091c
Sha384 cd914ae93a297520f80233e8e5ca18db26b3b272410d8113e07ee32a55cb5d057be26d96caf01b8c1ea1ea0d3efe35e4
Sha512 2a7567b95f834f8435edc1f662b7d86a39bb77b6c5df0420d81be41a0006860158b7dd89b39f174aef08cb24baf53e20660bfaf743d310b410af694abed05f2f
SSDeep 49152:fk2nM0Gj9gvIcRzm77htL293kjjN8rd0W:g9j97j2931b
TLSH 6AF59D077E5452A8D4CADB35C8B22691B624FC0D973537E33EA0AB706F317D6A976B00
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
[Authenticode]_9c04fbcf.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta

No STICH Path has been generated for this analysis yet.

1 structural branch were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 1
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x343C00 size 8200 bytes
[Authenticode]_9c04fbcf.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙