Malicious
PE Executable
MD5: bedbf012561c71bb4a9a65c2984b400a
Size: 3.16 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | bedbf012561c71bb4a9a65c2984b400a |
| Sha1 | d2ef8967da190d374da416b080051a19e56f1947 |
| Sha256 | 0b5baefd7cc0b2f4ed9a537ec813ca59130fe2d88783971687d8bcfa50015ff0 |
| Sha384 | 888b2e671a7e5aa65caad795058bc388b5c464dcaa16466b52b405eedd034fe7868f3010ee309d9d622dd0d2de9a1a89 |
| Sha512 | 5cbf0bea8b32aca55ddca5be49ab6d14af64ffb2f25c0abd64b29e24582c822e40eca903494664d66076f7e350854dff0e5033529f5e269223f156e68b5e98d6 |
| SSDeep | 49152:j08NnZT2vRs/qCIw9XYfOhXSh3wDPxdhOz6JS/:jLN9za22wDPNA |
| TLSH | 75E58D476CE009E9C4AA963289B75191BB75BC040F3223D76E50B7783F72BD18E39B94 |
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikontElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe~T1027~T1055>bin
Shape
pe:exe>bin
malicious
2 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Authenticode present at 0x303800 size 2416 bytes |