Suspect
72990e94e0316066e2fc625b64fa0626
VBScript
MD5: 72990e94e0316066e2fc625b64fa0626
Size: 11.75 MB
text/vbscript
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | 72990e94e0316066e2fc625b64fa0626 |
| Sha1 | e0d61ce862f8bcfde7643cd1230bb14441516fb5 |
| Sha256 | ef56d1386af7c97a5cd0b70c261de7e87f6c00894e3f30856adfc750a7b73b3b |
| Sha384 | 23254becffd520ed620a36b89efdf4ec5f7738f0615a66b598a91ddfa1f173350a35a4f9f9665f91b7b09b007fd696d1 |
| Sha512 | c8c7ea0b4624039706cff5137c4be1e88d0536ccab03be19077e9f0d774f4a38023d413010516070993af83f6fa974a2b96f082dd9362eec55f36bffbb3a6cec |
| SSDeep | 196608:b7q9w+gxmrUDCmTUH9UCwkuHxqWxzjpBgjzgmcK7gkmP2sZ9ZObwWa6zXUOd:y9wTmIjm1wkuRqWxxOzA6g52sgblzXUi |
| TLSH | 26C6331BA79B8E75E16AA435556AC022DE1B3C652DF27045BDF5E9CF0A30388B03D3B1 |
PeID
Borland Delphi 4.0Inno Setup Module [SFX] - v.5.x - 6.0 Borland Delphi - ASL Microsoft Visual C++ v6.0 DLLPe123 v2006.4.4-4.12
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
Structural branches: 2
STICH kept: 1secondary ignored: 1
bin
1Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe>scr:vbs
Shape
pe:exe>scr:vbs
2 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Overlay extracted: Overlay_69ddebf7.bin (11624662 bytes) |
No malware configuration was found at this point.
You must be signed in to view YARA rules.