Suspicious
Suspect

26c68796f8e043efb91503943438250a

Share on LinkedIn
Print
PE Executable
MD5: 26c68796f8e043efb91503943438250a
Size: 12.57 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 26c68796f8e043efb91503943438250a
Sha1 b79c5303e06d60a9e02334db5cfa452743bd29f9
Sha256 1e306e8345ada5cab196a9045f9f63a33d7914408875e77655ffd57ddd4ac673
Sha384 78fbbf42e76cf0c95924a6f07d7044b90151f83044c891429fc45f1129dba88266325382d11b42960fcb447494ad184e
Sha512 e9cc58745215ae3ee7f1228a3923ced8b3aad8d0a23545a0d2e73d5aeaf01f38127cfd38108989c0e81df0845726f809269779eaf3aecd769f1dd2ea18895a5a
SSDeep 98304:Aun+uBu7zmCvjkqwntcKNdAr4tG20CzEc0:EuK/jl4cKf0Ht1
TLSH B0C65B11FADB95F2E9035831016BB37F23315D048B28CB9BEB547B2AF87B6A11D66305
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPeStubOEP v1.xPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙