Malicious
AutoIt Compiled Script
MD5: 52e333022d73503d408f485a5fe678df
Size: 1.58 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | 52e333022d73503d408f485a5fe678df |
| Sha1 | 244ddb9a7eabac6d878a83664d0e31c180eaaf4c |
| Sha256 | 3d620693b4c7ba4a82a380843dc43953dcd091203f6cffb8f4160074c6a3ce3f |
| Sha384 | 86cd8b0d3ce611073009384a73dad62a62e9183474532e703bc18d2056aa9aa906b7fccf02060fbd3a0e1cfcde462c75 |
| Sha512 | 789d057d9e33fc2a50e18eef5b46db40c81e52806393d9b319e61d21fa997caea207777770fc9f76b8a48156ad21b9bb59109dc67303b8997c5ff08326a0186b |
| SSDeep | 24576:jH8MlODrEVSRTxQ3H+IQmNAqRLWFeM9Drx8CK0X+QA+Jv9hGVFpv6cuoV:7IDwaxCH/WmLWoi3xS0TASv9hiXScH |
| TLSH | F275239386F846B6F7F777B9AAF21267A2763C54477767EF0200469C09237C29131B22 |
PeID
Microsoft Visual C++ 8.0 (DLL)
Malicious
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
Structural branches: 7
STICH kept: 1secondary ignored: 6
bin
4img
2Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe>pe:autoit>pe:autoit
Shape
pe:exe>pe:autoit>pe:autoit
malicious
3 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | PDB Path: wextract.pdb |
PE Layout
UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential