Malicious
PowerShell
MD5: 653928cdf0512c462723c46b8b0cc69b
Size: 117 B
application/x-powershell
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | 653928cdf0512c462723c46b8b0cc69b |
| Sha1 | c149cffea5d2adfdcf7511bb6f7ad20fbf9bd83c |
| Sha256 | 157dcb521adc7226e4739391a479eca2c921b84d1e368f22a53ba3c36d3c723b |
| Sha384 | 802b3e415adb9212c362dfdca83726b9234450c820dec6d27f314ee43dbc30f1bdd4442d5277e5e8ed3ff25d9384f4c8 |
| Sha512 | 953eb106b3cee31195ba0b7902adfe42f4c6d080d0e2f7f0785680ae3aa6c22659f970a60311733d049bc3f2a14e95eeb401c9ecebc65af738b7175fac39ecfe |
| SSDeep | 3:VSJJFIGFGMFI1oM3KAJJFId1sqPJH0cVERvBuIF5dIMCHn:s8GFGMFI1R3Ks8zsO0cKREHn |
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
scr:ps1~T1027~T1059.001
Shape
scr:ps1
malicious
1 nodes
Deobfuscated PowerShell
UNKNWOWNmalicious
Start-huhuhuhuhuhuhuhuhuhuhu
Deobfuscated PowerShell
UNKNWOWNmalicious
-args huhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential