Suspect
AutoIt Compiled Script
MD5: 6314ec3f0ab119c406abd60e6ceb915a
Size: 2.44 MB
application/x-dosexec
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | 6314ec3f0ab119c406abd60e6ceb915a |
| Sha1 | 2351d4273292bb8fda9dcff02642d9d38341a0ec |
| Sha256 | efeb90f4bc5ded182e77b8b6cd5e95bcc9dcdd16a8ccc7fc28443c044c15459b |
| Sha384 | 788981f5de84b4c2836476ef3e29bd800b9aae7e799968d5cd0074dc2f7aa65a3f7ece6147e6275a79b9606b2834cd76 |
| Sha512 | e57ff4befbc443f085de13767c798bcbe914f3db6d480d6f3f8ada0e5d116f18a2b40996e8e2eb9f3aaa3d39b0faed9ccf84dcbb2bd1283877dfa1631f357d71 |
| SSDeep | 49152:puDXfxfAADSJRbjmYIjstJF1YT0dyciMfwRTRPTmo:Q8zNOTuyKwRThm |
| TLSH | EAB52312FAD50813E479E73598B3426B67767E87872A1A9F75E0500F1F22DC2AC3631B |
PeID
Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLL
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
Structural branches: 7
STICH kept: 2secondary ignored: 5
bin
3img
2Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe>pe:rsrc>pe:autoit
Shape
pe:exe>pe:rsrc>pe:autoit
3 nodes
Path
pe:exe>pe:autoit
Shape
pe:exe>pe:autoit
2 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | PDB Path: wextract.pdb |