Malicious
PE Executable
MD5: f2768bf84ef2c16efcec7520486f69b8
Size: 4.4 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | f2768bf84ef2c16efcec7520486f69b8 |
| Sha1 | ce7e4d6f883f009f91f7f872511bbc323e3c4d7c |
| Sha256 | 379f067cc2b638ceb07b704e5cd17fcc9c83bd167a3011f4362d7d2de960580b |
| Sha384 | 3a4e41466473aba71db1843eaed2903cae9dc4edb62cb1c547ed34dc1d4b3ac3bde25941c665160edec31e0af4f0c239 |
| Sha512 | 8a7c4291d0bb28a073bea1b633abac6972f4b9e4fb98fdc544df58fee5f54417744f8746935288b903603193f4b494dd9938e279be75c2c801f0f237a2069968 |
| SSDeep | 49152:NjkVt6PPYQD1j9mHek4/tM/cdHxarjRrkRlMMfkDF+ohOfZApaTefAH9:NoSmx4eR4lzk4oh7Ed |
| TLSH | E9168B07BD9504F9C1A9DB3189B64242BB74BC4D4B3233E72E94AA342F767C16D39B24 |
PeID
Free Pascal v0.99.10HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe~T1027~T1055>bin
Shape
pe:exe>bin
malicious
2 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Authenticode present at 0x432C00 size 2384 bytes |