Malicious
Malicious

58e13b8a9e58f1e4f0b7c74156194e6f

AutoIt Compiled Script
|
MD5: 58e13b8a9e58f1e4f0b7c74156194e6f
|
Size: 1.29 MB
|
application/x-dosexec

Infection Chain
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
58e13b8a9e58f1e4f0b7c74156194e6f
Sha1
643c823f90f69b97575ead591575620b7304f432
Sha256
1d0e674e1283384d0e33c82e3ea5f6f7a54a21186cfc183b36ba49706899f162
Sha384
e8c23a305c53eeced4c908b18dec19802699235bbf36788ff1564d3167ad62b3e32e545b68707b572281f5529e548e53
Sha512
04c6ab429b606493337183aa46ad17c6746b4ab2439cf51354ae0bba66a21e0228da1eb11df213b63561aa186aa0d7b9d04236d3ffd12284ac2184f7c4c46a92
SSDeep
24576:c5EmXFtKaL4/oFe5T9yyXYfP1ijXdaTB0iPj29bmt4hUpsl/B:cPVt/LZeJbInQRaT2xdhUpK
TLSH
F055CF027381D062FFAB91334F56F6115BBC6A260123A62F13982D79FE705B1563E7A3

PeID

Microsoft Visual C++ 6.0 DLL (Debug)
Microsoft Visual C++ 8
Microsoft Visual C++ 8
Microsoft Visual C++ v6.0 DLL
VC8 -> Microsoft Corporation
File Structure
aut5EB0.tmp.tok
Malicious
[Cleaned].au3
Malicious
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
RT_STRING
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
ID:000A
ID:2057
ID:000B
ID:2057
ID:000C
ID:2057
ID:0139
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
Artefacts
Name
Value
PDB Path

t$di

58e13b8a9e58f1e4f0b7c74156194e6f (1.29 MB)
File Structure
aut5EB0.tmp.tok
Malicious
[Cleaned].au3
Malicious
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
RT_STRING
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
ID:000A
ID:2057
ID:000B
ID:2057
ID:000C
ID:2057
ID:0139
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
Characteristics
No malware configuration were found at this point.
Artefacts
Name
Value Location
PDB Path

t$di

58e13b8a9e58f1e4f0b7c74156194e6f

You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙