Malicious
Malicious

125f2658124b904a704662e6fba85c83

AutoIt Compiled Script
|
MD5: 125f2658124b904a704662e6fba85c83
|
Size: 1.06 MB
|
application/x-dosexec

Infection Chain
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
125f2658124b904a704662e6fba85c83
Sha1
3e3320c4edc4bd2f91106994517c5bfe8ce54913
Sha256
e5b84f807fa77f125476828fd693fb75ba6ff3f3215d615a4d9d9ad69a434c90
Sha384
ae1f89e20126ed7efcde6777f6c7464d28bc3d6a2b6379078580f79c7774501b7a5c34140ba65da09a1a6ef63be2ae6d
Sha512
48b933f1dc12ec8d0e38a4a3b8388392d11d3aff3aba688f1da31b4af78a4ab09b192119a853487f37b42f4c741a991fb8ee00b9fe7bda0073b861f0d778333e
SSDeep
24576:ktb20pkaCqT5TBWgNQ7aCd1MvxMDJO6A:NVg5tQ7aESic5
TLSH
AD35BE2273DE8364C77252737A267701AEBB7C2905A5F41B2FD83D3EB930121525EA63

PeID

Microsoft Visual C++ 6.0 DLL (Debug)
Microsoft Visual C++ 7.0 - 8.0
Microsoft Visual C++ 8
Microsoft Visual C++ 8
Microsoft Visual C++ v6.0 DLL
VC8 -> Microsoft Corporation
File Structure
aut8E6B.tmp.tok
Malicious
[Cleaned].au3
Malicious
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
RT_STRING
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
ID:000A
ID:2057
ID:000B
ID:2057
ID:000C
ID:2057
ID:0139
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
Artefacts
Name
Value
PDB Path

????

125f2658124b904a704662e6fba85c83 (1.06 MB)
File Structure
aut8E6B.tmp.tok
Malicious
[Cleaned].au3
Malicious
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
RT_STRING
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
ID:000A
ID:2057
ID:000B
ID:2057
ID:000C
ID:2057
ID:0139
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
Characteristics
No malware configuration were found at this point.
Artefacts
Name
Value Location
PDB Path

????

125f2658124b904a704662e6fba85c83

You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙