Suspicious
Suspect

cc44aa912304bbb62c108a5280650704

PE Executable
MD5: cc44aa912304bbb62c108a5280650704
Size: 3.26 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 cc44aa912304bbb62c108a5280650704
Sha1 91d36bbf06ffa96d1012412ac0a1c3e49c8b9998
Sha256 49e8d7172a7e387d3c3ca996b48b033c6ddffba42152ef4ce132fb906b774ea9
Sha384 aeaccb2c95db4afcf8a279bf94462e1460ddadeb4f69c1b4dd50c69c2de6571418902f460550f78be2cf8b7fcfb24190
Sha512 69549cf0c6891158b1829f4e13b1c6d1ca4ba2f6435ff9be335addbc2b51e7e33f41c1f8bf9727a0394b7d47c89783598175fb4dfaf47183078258fa2b136a0e
SSDeep 49152:jZaDyp7y66n5bwDOH816TPbEt2JUs8Gb:jNGJc16Km
TLSH 59E59E07BCE149EAC499523185BB52A17B35FC190B3223D72E80B7382FB67D09D7AB51
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙