Malicious
Malicious

14d0222e1c5064962de11b3b50117294

AutoIt Compiled Script
|
MD5: 14d0222e1c5064962de11b3b50117294
|
Size: 1.21 MB
|
application/x-dosexec

Infection Chain
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
14d0222e1c5064962de11b3b50117294
Sha1
98cc9b19b77914ff46448cdb715f234c7b0c3229
Sha256
74b6eedc5edf1546746d892eedc443d92ca67679a340088bebcba9abe5da3988
Sha384
5a9973689a723b100ec5eeb36579f16bea1b0d6298b3f25c31b30f7790ff71199e42c2db949f360f4c559012bb748fa4
Sha512
a56b96ddfac60622eaca3f73fb1fe66f9c06d6496419e6f7afb4a097e88ca0bd90d47176c7c5b77839073abf3de1473569759094bc0e6a1dc2b7aab022c143d1
SSDeep
24576:ytb20pkaCqT5TBWgNQ7agwUfo+eq1Kdoe4Urhxb6A:/Vg5tQ7ag1Q+7pUrhd5
TLSH
BD45DF1373DE8361C7B25273BA597701AEBF7C2506B5F86B2FD8093DA920121521EA73

PeID

Microsoft Visual C++ 6.0 DLL (Debug)
Microsoft Visual C++ 7.0 - 8.0
Microsoft Visual C++ 8
Microsoft Visual C++ 8
Microsoft Visual C++ v6.0 DLL
VC8 -> Microsoft Corporation
File Structure
autDC87.tmp.tok
Malicious
[Cleaned].au3
Malicious
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
RT_STRING
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
ID:000A
ID:2057
ID:000B
ID:2057
ID:000C
ID:2057
ID:0139
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

PDB Path: ????

14d0222e1c5064962de11b3b50117294 (1.21 MB)
File Structure
autDC87.tmp.tok
Malicious
[Cleaned].au3
Malicious
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
RT_STRING
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
ID:000A
ID:2057
ID:000B
ID:2057
ID:000C
ID:2057
ID:0139
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙