Suspicious
Suspect

26c68796f8e043efb91503943438250a

PE Executable
MD5: 26c68796f8e043efb91503943438250a
Size: 12.57 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 26c68796f8e043efb91503943438250a
Sha1 b79c5303e06d60a9e02334db5cfa452743bd29f9
Sha256 1e306e8345ada5cab196a9045f9f63a33d7914408875e77655ffd57ddd4ac673
Sha384 78fbbf42e76cf0c95924a6f07d7044b90151f83044c891429fc45f1129dba88266325382d11b42960fcb447494ad184e
Sha512 e9cc58745215ae3ee7f1228a3923ced8b3aad8d0a23545a0d2e73d5aeaf01f38127cfd38108989c0e81df0845726f809269779eaf3aecd769f1dd2ea18895a5a
SSDeep 98304:Aun+uBu7zmCvjkqwntcKNdAr4tG20CzEc0:EuK/jl4cKf0Ht1
TLSH B0C65B11FADB95F2E9035831016BB37F23315D048B28CB9BEB547B2AF87B6A11D66305
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPeStubOEP v1.xPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙