Suspicious
Suspect

3cc4aa480c36b9b6fed18f91ec4e8fb3

PE Executable
MD5: 3cc4aa480c36b9b6fed18f91ec4e8fb3
Size: 5 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 3cc4aa480c36b9b6fed18f91ec4e8fb3
Sha1 ac5ed0291ae4d061fe781515ca30758857188f2a
Sha256 eafc41abbe8f39fada5ea61d0d4af677840fb99385fc3eb1ece382573fe248e2
Sha384 c97245423c39bcf8a3e0f3a5db3c56f7f8cdec61777aa3b13c94d0e5584591eb20ec9769c9219a1116909717079e0759
Sha512 bfc83bf3f53559e394de415ae94ac6c978ad23bd6fbca1be405705770ba3fde4945e2d8e3191fb484e4265c7c9ede2c84a146d377b46af3329a8da121514cf76
SSDeep 49152:uFKpz7i7FAlc03DCBGcm+a1h6TczyJPj4RRHrYvAaaf:uc3XND1aJrCOkf
TLSH 2A366B03EEA548F9D296D73588774242B764BC499B3533D32E60BA742F363D0AE79B40
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙