Malicious
Malicious

fb511a9bfb47854681354b2e80fa4f7f

PE Executable
MD5: fb511a9bfb47854681354b2e80fa4f7f
Size: 14.38 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 fb511a9bfb47854681354b2e80fa4f7f
Sha1 ce7dba31ba9c37ba933de8a9de612981fc2bb232
Sha256 226618b7b83db7df35402a8d56dc5a55203616f2a95233f8aeed4e9f917be637
Sha384 63ce042e3beef4cc53ef2c9a90859e2bbf5e9df622da7ada3fd78c0e92ba4f7451e9906f88595b7a417f3da2cd7665c7
Sha512 cae7d1a651c00e9487fe31e11e307cf36db17683f2fa83e5d9530ceed895e9c407bcc0c82c97b2c382554f499dc71a7ebe4ed0d52e534b6fee98eb1b16e211bf
SSDeep 98304:0CKVSvGAQlmu3Jt6pkxcpQ85Dewi9mlFET4uMf:0CpvbfOcpf6wi+ET4uM
TLSH 7EE66C1395C990A5C49AF97DC1BA53A87638B85EC63037B33E969FF02E21384DB74B41
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
[Authenticode]_fa142bd0.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055>bin
Shape pe:exe>bin
malicious 2 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0xD66200 size 8056 bytes
[Authenticode]_fa142bd0.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙