Malicious
AutoIt Compiled Script
MD5: 11ebff3c00d40d9457888edbdc1578e9
Size: 1.77 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | 11ebff3c00d40d9457888edbdc1578e9 |
| Sha1 | 59ea118642422d73518f2205c158e08923f5e236 |
| Sha256 | 6d581ca6c51f8f23c7c80f49b316b6729cd60224f015233ba7e73812aca24bc2 |
| Sha384 | 2bcb0ce2d30af88615c1a6dada42140fd035ff9fb1893d21744c02aa504c41f879dc12b412df72dcb260916722e7d01d |
| Sha512 | fa5c5d2493855ed312e089cb6a8bb36a1c9bea0a7dbdfe9a1516c0c3e328dd962feab17b86ae0d28fd43dc3bda788a3a72fd7eab9c03ee6f9d06f3af020800f3 |
| SSDeep | 49152:zkfovDwaxCH/WmLWoi3xS0TASv9hiXScHP:PEu34crv9YScv |
| TLSH | FD85235396E88467F6A7377CA9F12323B2793C901B7393DF66406A9C2A337C25531722 |
PeID
Microsoft Visual C++ 8.0 (DLL)
Malicious
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
Structural branches: 8
STICH kept: 1secondary ignored: 7
bin
5img
2Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe>pe:autoit>pe:autoit
Shape
pe:exe>pe:autoit>pe:autoit
malicious
3 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Authenticode present at 0x1AD200 size 10424 bytes |
| Info | PDB Path: wextract.pdb |
PE Layout
UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential