Malicious
Malicious

ee12bf94330dbbb5025aae8e1ec908a7

PE Executable
MD5: ee12bf94330dbbb5025aae8e1ec908a7
Size: 5.45 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 ee12bf94330dbbb5025aae8e1ec908a7
Sha1 638bb882ff0dba784ecc078c1792706983af0f91
Sha256 cbabe6cb9fd822bb69b271c14952397b4d2a571d9e11e08c26312fad1b158163
Sha384 3d6d1276499f2c2a1abdb6518781cadd52b092e62e23e0647f48945caf4aa94cbacaeb4fa1763b098da47c34eb462507
Sha512 65789a9e70ddd8e8407cab5ac4227cea541f6b95acb9e95e868419f97e0383f20d4c5184eece99c74a32085a78c6c0ea47bc576730e81dd69a381fa858e2e05a
SSDeep 49152:J1IBTooSYVqK6umfl0Ji3L1Uoh4vfIgw1qxgalT5dswSSye:JILkuJ2ObHnB5hf
TLSH C3461A03679005A7D164C638627A6B12A771FC2CCB3776D74D81A1EA2B57BC2E7F1B08
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
[Authenticode]_96f7acb5.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055>bin
Shape pe:exe>bin
malicious 2 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x530C00 size 8072 bytes
[Authenticode]_96f7acb5.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙