Malicious
AutoIt Compiled Script
MD5: 3f23210d02d97c3b6bdfe538d55751e7
Size: 1.56 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | 3f23210d02d97c3b6bdfe538d55751e7 |
| Sha1 | 9a385717ddb6d8eb6df103cd85c6d90afb6cf3d7 |
| Sha256 | 24e32ef97f026275a324082142b1f7a7ddd0b07c0eaccb6974efcd8b422324c1 |
| Sha384 | 23f0aa39f7d923bfa22bb4234ceedcdf12c5baea8ccc2096effa22422f8b1f0910632ae7245d0a8615b69af3744bdfb8 |
| Sha512 | e3f7f16a729f2edf084d6ce478ddaf56e599db9ac23c292a1b2dd79e603eafb393b4dd6abc6133317003b07b64333697653ac6af6350b6999c2fe55e346b3371 |
| SSDeep | 24576:r4WLym7KZMO33BLn5M4hCx28UOS0rDQJ+pLeTTqFYA0zDPr045Oa5PgFvnUy+ivl:zLyPMO33VhmvUd7gyqFYRDZOaIFUninN |
| TLSH | A57523217BE00914D4BAB3B0ADE652876671BDA0AF33BACF1111774D5F32492B13A71E |
PeID
Microsoft Visual C++ 8.0 (DLL)
Malicious
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
Structural branches: 7
STICH kept: 1secondary ignored: 6
bin
5img
1Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe>pe:autoit>pe:autoit
Shape
pe:exe>pe:autoit>pe:autoit
malicious
3 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Authenticode present at 0x17A200 size 10320 bytes |
| Info | PDB Path: wextract.pdb |