Suspect
AutoIt Compiled Script
MD5: 3f84cf4998a9423a4124dc0483d90441
Size: 1.45 MB
application/x-dosexec
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | 3f84cf4998a9423a4124dc0483d90441 |
| Sha1 | 8a52d1b50cf59e9dbee80fc1f785387dbeccfefa |
| Sha256 | a555f3638c53592b3789df8a4cd03a225a2fb707cdde646887678dcbbbfa723f |
| Sha384 | 4bf8ad261aed0ee326a7babbfc901edf2c93e6a9509065930544e77b36d9e99cb1a0d594af05fafebbe932d217489ed4 |
| Sha512 | b9cf57ce5622be35234a97c39d8a200aeb553426b920745cf273fb321994ee9ae573326360b48d5971d8a8647252848ebb8027f3faaed86fedc8c070202dacbc |
| SSDeep | 24576:XUCtrDLWk0yNVBSP9HYoHmAcuEjR0bmhmwiYDcZZYzLoybWr0S/n2ER:kYSnyNVBSP7HUPOahBiDaEybWrvp |
| TLSH | 4765234207E50868E5A52375C8E3D6935335FC454B38AACF22A8FFDC3B229968475F27 |
PeID
Microsoft Visual C++ 8.0 (DLL)
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
Structural branches: 7
STICH kept: 1secondary ignored: 6
bin
4img
2Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe>pe:autoit
Shape
pe:exe>pe:autoit
2 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | PDB Path: wextract.pdb |
PE Layout
UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential