Suspicious
Suspect

353e68846a55a9d49adaa2cdf4856ae7

PE Executable
MD5: 353e68846a55a9d49adaa2cdf4856ae7
Size: 5 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 353e68846a55a9d49adaa2cdf4856ae7
Sha1 280bdbc983cdf9d36a5b4498c9d436c4dd7e6eaa
Sha256 0b83f7746bdd2f7633fdadc707fda9931d70915155ac1e4ba8300a311e5be6ba
Sha384 db756b3423cf76828361aac5360e17214bd8428632841796cab55cd85c79c4126fc13c1f4245660e75d97892197d66c5
Sha512 ec67c558b0509dc3ba6685c746d0d658c52fa24eb37b07eb060a1201542f567a56c66a31e3d067733e222de14512e7d69dea6c1987bfd99744761314b2d9e996
SSDeep 49152:uFKpz7i7FAlc03DCBGcm+a1h6TczyJPj4RRHrYvAaaN:uc3XND1aJrCOkN
TLSH 49366B03EEA548F9D296D73588774242B764BC499B3533D32E60BA742F363D0AE79B40
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙