Malicious
Malicious

04c23e50a260c311af87e03e43ee43d4

AutoIt Compiled Script
|
MD5: 04c23e50a260c311af87e03e43ee43d4
|
Size: 1.9 MB
|
application/x-dosexec

Infection Chain
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
04c23e50a260c311af87e03e43ee43d4
Sha1
0434ce1e59024c1ea4db4a87fe59fa9061722689
Sha256
f69117404a8233baa0537086f4081f9172f98c2ba3b863ccf829d7f8b7da7d43
Sha384
a7dc8a1fcf3a7266e0badd5418a6200972f8f06ffb7d9e30beb945e522802dedb62eeaf0729541f52caa451ad120cfe6
Sha512
0d4997a36622af9f4a38f57ed7d3f99a24626e501eecfa6666c76b535de9aeb8c98418dde2b60a8ab2b0cea9ef6d66e76efd1b57bc371eeb5de467c4b1d0a42c
SSDeep
49152:w2EYTb8atv1orq+pEiSDTj1VyvBa6NpPSE0lDfB1jmlW:lXbIrqgC5fBhml
TLSH
F195D00923A4829DFEABE176CA13C657D7B17C450237972F01A4AB766F337715A2E320

PeID

Microsoft Visual C++ 8.0 (DLL)
Microsoft Visual C++ v6.0 DLL
Pe123 v2006.4.4-4.12
File Structure
aut3768.tmp.tok
Malicious
[Cleaned].au3
Malicious
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
ID:0003
ID:2057
ID:0004
ID:2057
ID:0005
ID:2057
ID:2057-preview.png
RT_STRING
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
ID:000A
ID:2057
ID:000B
ID:2057
ID:000C
ID:2057
ID:0139
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

PDB Path: t$di

04c23e50a260c311af87e03e43ee43d4 (1.9 MB)
File Structure
aut3768.tmp.tok
Malicious
[Cleaned].au3
Malicious
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
ID:0003
ID:2057
ID:0004
ID:2057
ID:0005
ID:2057
ID:2057-preview.png
RT_STRING
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
ID:000A
ID:2057
ID:000B
ID:2057
ID:000C
ID:2057
ID:0139
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙