Suspect
VBScript
MD5: 6fa3a2610674a2e92428266bb8521ccc
Size: 14.1 MB
text/vbscript
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | 6fa3a2610674a2e92428266bb8521ccc |
| Sha1 | bcc296c1b06eaa631b5d07d38b9780444313ec15 |
| Sha256 | 2febd77a459f7f10ecf3bf36fa42689f765a333990ced7f04ab898e0595edbb2 |
| Sha384 | 2409570d030abff10baf264a6929aa7546124c14df88cbdee9432e44abb61348c61bc0f6c935b2674eb2c09646c46322 |
| Sha512 | 158a3247dbc0c7998eb16d6fe80698a79afc0bfee54222ffe01420272947b9882ea734c0f1340d703d966208ff4e2ca8197060e98005844392d2789d00e762ef |
| SSDeep | 393216:7kC4pyyKtO3PFwFJdf0uXMCHWUjCcuI3/PGTAI:7uyGPFwpf0uXMb8/H/O7 |
| TLSH | D4E63388AAE443EEFAB3263CDDE25556EDB4BC712B31C9CB47948655AC370D48838743 |
PeID
Microsoft Visual C++ 8.0Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLL
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
Structural branches: 3
STICH kept: 1secondary ignored: 2
bin
1img
1Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe>scr:vbs
Shape
pe:exe>scr:vbs
2 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Overlay extracted: Overlay_0f52f0d2.bin (13803064 bytes) |
| Info | PDB Path: t$mn |