Suspicious
Suspect

cb21b2baa502dff62c2befb1f2e685ee

PE Executable
MD5: cb21b2baa502dff62c2befb1f2e685ee
Size: 10.52 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 cb21b2baa502dff62c2befb1f2e685ee
Sha1 2e540d8add3684b2f34fe2d0dc5e20792d31d40c
Sha256 566d053e454ae2efcf82d41a94af85effe0d46287a70bedacb80f10fb1e1e069
Sha384 4e1b6882e8c8f7b7052c1973b266996aed9be8763ed0afc2ea4c4addaf7517be063471e276c1f3ca04a096cedd1d137c
Sha512 c48005cc51e80da69a3f675991087f72d0dd2473ed649fafdfce7af45e212bf2129e3ce7412b47c7b3948e8d5b48d7c44fd93fe4ae080c8204712e4ffef5f4a9
SSDeep 98304:Dy0DgGkKN67KuMWnFs1SZBZ8XjzRyiE/:XqKEBMQZBZ8XPM/
TLSH 41B64907E8A919E5C0ADD530C6769123BB317C8A5B3123D71B54F6286F33BE0AEB9354
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙