Malicious
Malicious

59b45720ffdec913119cabc379980082

AutoIt Compiled Script
|
MD5: 59b45720ffdec913119cabc379980082
|
Size: 1.19 MB
|
application/x-dosexec

Infection Chain
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
59b45720ffdec913119cabc379980082
Sha1
14225156b7d2398e06cecce52edbae5792e40955
Sha256
c621cdef483f72a72f9e9b3296c85c7c8d064a707dfdd2c11d7fc21d75d123ef
Sha384
5953a20c8c38bae8088d5486a071692672fd3e71fdb7956078d3138d4c0d614f1c0464d7937f64149303a47d9af1bdc9
Sha512
196649a77c03fc0875f305053293ce72cd7509fdafea2cdedef6ea2ea1151dd64ed1edd2b0806aa6a06c2438e30c197008a8341ce37dd031a2627d9c0294e3af
SSDeep
24576:Itb20pkaCqT5TBWgNQ7aRBmd/n+3+yCZ6A:RVg5tQ7aRBU/+uyy5
TLSH
7045DF2363DE8361C7B25173BA5A7702BEBF782506B5F86B2FD4093DE920121521E673

PeID

Microsoft Visual C++ 6.0 DLL (Debug)
Microsoft Visual C++ 7.0 - 8.0
Microsoft Visual C++ 8
Microsoft Visual C++ 8
Microsoft Visual C++ v6.0 DLL
VC8 -> Microsoft Corporation
File Structure
aut4331.tmp.tok
Malicious
[Cleaned].au3
Malicious
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
ID:2057-preview.png
RT_STRING
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
ID:000A
ID:2057
ID:000B
ID:2057
ID:000C
ID:2057
ID:0139
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

PDB Path: ????

59b45720ffdec913119cabc379980082 (1.19 MB)
File Structure
aut4331.tmp.tok
Malicious
[Cleaned].au3
Malicious
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
ID:2057-preview.png
RT_STRING
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
ID:000A
ID:2057
ID:000B
ID:2057
ID:000C
ID:2057
ID:0139
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙