Malicious
Malicious

f2768bf84ef2c16efcec7520486f69b8

PE Executable
MD5: f2768bf84ef2c16efcec7520486f69b8
Size: 4.4 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 f2768bf84ef2c16efcec7520486f69b8
Sha1 ce7e4d6f883f009f91f7f872511bbc323e3c4d7c
Sha256 379f067cc2b638ceb07b704e5cd17fcc9c83bd167a3011f4362d7d2de960580b
Sha384 3a4e41466473aba71db1843eaed2903cae9dc4edb62cb1c547ed34dc1d4b3ac3bde25941c665160edec31e0af4f0c239
Sha512 8a7c4291d0bb28a073bea1b633abac6972f4b9e4fb98fdc544df58fee5f54417744f8746935288b903603193f4b494dd9938e279be75c2c801f0f237a2069968
SSDeep 49152:NjkVt6PPYQD1j9mHek4/tM/cdHxarjRrkRlMMfkDF+ohOfZApaTefAH9:NoSmx4eR4lzk4oh7Ed
TLSH E9168B07BD9504F9C1A9DB3189B64242BB74BC4D4B3233E72E94AA342F767C16D39B24
PeID
Free Pascal v0.99.10HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
[Authenticode]_31dd3355.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055>bin
Shape pe:exe>bin
malicious 2 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x432C00 size 2384 bytes
[Authenticode]_31dd3355.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙