Suspect
VBScript
MD5: 18ad51d34f7092e6c87930c40cde319a
Size: 14.32 MB
text/vbscript
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | 18ad51d34f7092e6c87930c40cde319a |
| Sha1 | 7086f9d1f0f080219b5048418b91a03a9349be51 |
| Sha256 | 77e74075645dd76bc4836bb5e8ffb6a6a1dbdfb520a5cd116b8e6848a6ec61ac |
| Sha384 | 850bbf43fe1f381eb6714819be496a9e0efdb7453fac1d4f03c257c6fb71eb6e13798494dd300d507c332b9e66f55bfa |
| Sha512 | 7d005b495b6323c49760e06f19ddcbe5f9e0f0d19bfdf0f9e84989f15e9754a9fd8a22d6519dac2954b52df826bbcc3da07f8410f7fbcf13d56a331e579194f6 |
| SSDeep | 393216:09arm+y38sLWluhEncuv1ZPGTXMCHWUjXVcuI3/PGTAI:090xy3IlJc+ZPGTXMb8XiH/O7 |
| TLSH | 91E6339869E039FDFA73907C9DE19892E129B82507B3C6CB176483A65E171D0CD3EB13 |
PeID
Microsoft Visual C++ 8.0Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLL
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
Structural branches: 3
STICH kept: 1secondary ignored: 2
bin
1img
1Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe>scr:vbs
Shape
pe:exe>scr:vbs
2 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Overlay extracted: Overlay_58a8f49f.bin (14018623 bytes) |
| Info | PDB Path: t$mn |