Malicious
Malicious

66d2c7f05474ea86f03c27e1175c5a01

AutoIt Compiled Script
|
MD5: 66d2c7f05474ea86f03c27e1175c5a01
|
Size: 1.21 MB
|
application/x-dosexec

Infection Chain
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
66d2c7f05474ea86f03c27e1175c5a01
Sha1
b4823febe442d8176857c49750761104ef195603
Sha256
b8f64422f2c39daddc4cea3b59d9a8f34114e7c865e7d9bbccddd2f3a3ae2dc9
Sha384
7f77e4e9b4c759c97cd2ea02ae4862c124da6f75fbefe313dbde7084f5a4a766e5e2eb9b52dad8bdc29a1c7e10ba8e00
Sha512
4756da87504087887b2aff268b4028e9674f4f310ab6156d190ff7060c485709878d0edccbaf337c0dcdb4a80b81dd453b7345929b384f59b36f7d4cf2959e4c
SSDeep
24576:Rtb20pkaCqT5TBWgNQ7aHFY51Sh0x2h/GcGyujknv6A:iVg5tQ7aHa51Six2htGlkv5
TLSH
1645D01363DE8365C3725273BA257701BEBB782506B5F96B2FD4093DE920122521EB73

PeID

Microsoft Visual C++ 6.0 DLL (Debug)
Microsoft Visual C++ 7.0 - 8.0
Microsoft Visual C++ 8
Microsoft Visual C++ 8
Microsoft Visual C++ v6.0 DLL
VC8 -> Microsoft Corporation
File Structure
aut9195.tmp.tok
Malicious
[Cleaned].au3
Malicious
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
ID:0003
ID:2057
ID:0004
ID:2057
ID:0005
ID:2057
ID:0006
ID:2057
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
RT_STRING
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
ID:000A
ID:2057
ID:000B
ID:2057
ID:000C
ID:2057
ID:0139
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

PDB Path: ????

66d2c7f05474ea86f03c27e1175c5a01 (1.21 MB)
File Structure
aut9195.tmp.tok
Malicious
[Cleaned].au3
Malicious
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
ID:0003
ID:2057
ID:0004
ID:2057
ID:0005
ID:2057
ID:0006
ID:2057
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
RT_STRING
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
ID:000A
ID:2057
ID:000B
ID:2057
ID:000C
ID:2057
ID:0139
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙