Malicious
Malicious

19ac024b149cf71f5d74a21a0dbe193f

PE Executable
MD5: 19ac024b149cf71f5d74a21a0dbe193f
Size: 4.92 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 19ac024b149cf71f5d74a21a0dbe193f
Sha1 d69a81091f194b6775cff3aafd8b9038c1207fb1
Sha256 92386d22b386d57534a7c069dce6c5b5034765f7bba78d9f4f87d94920c01d84
Sha384 1ab407761a9059bd86514bc99d93dd1bbf9c2dc2fbab3c26a4fc345bceb915353247058d48afeeacb65fe2a08ae9ea85
Sha512 725e72ad9c0eaae9ea579824568d539bee2a5ca8ee255d406e9a2ba4f12c6211908aebe91ee5f77621b0518e6ff61036acf7b70b3ab419ca173c23161dbcfa5b
SSDeep 49152:CKnLG56cO0iAdicM2h/W3vCUkEkaerfNSpQRbsqBzu7Iorp1JtncT:Cf/9luvdkEkZNSpcbBzgn
TLSH E3366B03BD9125B9C09A973689B78252B774BC2C4B3133E32E50BA782F767D05A36F54
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
[Authenticode]_d298cf92.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
.rsrc
Resources
RT_ICON
ID:0001
ID:1033
RT_GROUP_CURSOR4
ID:0001
ID:1033
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055>pe:rsrc>bin
Shape pe:exe>pe:rsrc>bin
malicious 3 nodes
Path pe:exe~T1027~T1055>bin
Shape pe:exe>bin
malicious 2 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x462E00 size 2416 bytes
[Authenticode]_d298cf92.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
.rsrc
Resources
RT_ICON
ID:0001
ID:1033
RT_GROUP_CURSOR4
ID:0001
ID:1033
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙