Suspicious
Suspect

a411cd1e1c34af21b4bd3f509ea95864

PE Executable
MD5: a411cd1e1c34af21b4bd3f509ea95864
Size: 5.01 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 a411cd1e1c34af21b4bd3f509ea95864
Sha1 8dcacb905ecb7e3cd1baf14764ecc3385b7a0281
Sha256 27feafc31ae04e5e2ca5adbafc945e860572779e014b570da3fbcd0bff9190dd
Sha384 e6b860bbab6f09f7b1ace45e23d10f9b0c6d3df9b6c31c35966a0c400b40e0e8d813930c53afd1d500fd958ac4d5c9f9
Sha512 abf6b7b808cf1f203b0d066d726c7906885347894669b980350e95c26518ed3207ced7defd9a29f3273f0bd38ed159ac7b68220a96e462e287682ec3dce755fa
SSDeep 49152:h65nRrdVNns2+k65ty7LghTdTiAY+xPt5Eh6QEbv0QCuErXNMHh9iWA:0RvUk65tyyTiAj9EQszTNMh9XA
TLSH 79363B17ECA546A9C0AEE534897292937A717C485B3123D32B60F73C2F77BD0AA79704
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙