Suspicious
Suspect

37835e5dc2d38d689b895ea352489f5e

VBScript
MD5: 37835e5dc2d38d689b895ea352489f5e
Size: 2.81 MB
text/vbscript

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 37835e5dc2d38d689b895ea352489f5e
Sha1 0c1ed4a7d493cc40e3d66305948b3c4fd4d025e7
Sha256 af529b7c37407a0f524d9329c64d3f75e80d7bc8d37f1f898888cd26c3f5cedb
Sha384 e832f15dc50b35ee932fa7387f25d14222742f7d0662645e9776f84b0e41abf8b4f941a040fd0033fc403a272d95c25f
Sha512 0ea42558440a4c01819cfafd6630d16d9784d55559cf1adadea894666042b2a6ddbf6257c0d58959ff37358bbd43de3c752c5aca78ee4010717fa172d42cbe17
SSDeep 49152:5mScS27davgFU2rv5Lm9gs4S4d1FLbzynI9kXS3q5NUTt0GZIdmEnFcbTFl:8TdavgCUhmOJJd1FvzgI+XS3qPO0B1ni
TLSH AFD52316F5A354F9E06BC031829542636535B8890B20BBFF47A585357F3AAF20F3DB26
PeID
Microsoft Visual C++ 8.0Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.text._Z
.rdata
.data
.pdata
.8735e61
.d39d808
.fptable
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: t
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.text._Z
.rdata
.data
.pdata
.8735e61
.d39d808
.fptable
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙