Malicious
Malicious

cea0892394ac5e26c48336c1b89629ed

PE Executable
MD5: cea0892394ac5e26c48336c1b89629ed
Size: 6.98 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 cea0892394ac5e26c48336c1b89629ed
Sha1 6dc72501038e40c90aca22445f827916e4b0e536
Sha256 1dd8bce285a289682e1a21e9e81d9254f091c21bc189682f4afdb82a666bba39
Sha384 e1b79c8522f84eb0ead2a1dd03a778cacde71eb0b322440e18778615f28b15788b2eb423c8aeee931318519474adc3d1
Sha512 cae67846a06a8300d5b109b14fd4090f57db29c15c85ed9af087a5de1952a244c63db3be39a5533c58a5b9c27849a03bad7363dad4a55c877cff056d122c8725
SSDeep 98304:6ct0vFDB1sRbyWfB70+Z6EY7zD3tEbba+Rwfv6E:6ct0vFDB1sd/NYh7zD9Eb++Rwn6E
TLSH 6B668C073E9041B9E44ECA3990BB1256AB74BC0C9B7673D32D50B6701F767E42AF9B48
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
[Authenticode]_2c90176d.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055>bin
Shape pe:exe>bin
malicious 2 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x6A6800 size 8112 bytes
[Authenticode]_2c90176d.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙