Malicious
Malicious

98092bcbbb340e5e0ed027d17187f5d1

AutoIt Compiled Script
|
MD5: 98092bcbbb340e5e0ed027d17187f5d1
|
Size: 1.23 MB
|
application/x-dosexec

Infection Chain
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
98092bcbbb340e5e0ed027d17187f5d1
Sha1
71ad1f43dfc8d89e7dbc5e30c7506ae741725eb9
Sha256
f27751208fd9643df473fc8b392c57f9a214775f0939d76ce11dfff355dacee0
Sha384
56ed0006e8de519e460715a1d503e01af25f3b3567aaff24bb71ab551bfcac4b69921dc5465c60aa1d50ee8fda4fce1e
Sha512
97e31877002a5d679ea1e28ec1340755d76e70688800e1e52cf2767b4b7af0a59252ca9becb8b4a73c0183e45ad360ea757acd97870b0cfbcd2241b772a112e5
SSDeep
24576:Ptb20pkaCqT5TBWgNQ7aLWtKZsRJIeh1smGPG6A:MVg5tQ7aStxJ995
TLSH
0C459D13739D82ACCA7251737A75E7C17E7BA82705A3B4573FD4883DE860121928A6F3

PeID

Microsoft Visual C++ 6.0 DLL (Debug)
Microsoft Visual C++ 7.0 - 8.0
Microsoft Visual C++ 8
Microsoft Visual C++ 8
Microsoft Visual C++ v6.0 DLL
VC8 -> Microsoft Corporation
File Structure
autC8DB.tmp.tok
Malicious
[Cleaned].au3
Malicious
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
RT_STRING
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
ID:000A
ID:2057
ID:000B
ID:2057
ID:000C
ID:2057
ID:0139
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
Artefacts
Name
Value
PDB Path

????

98092bcbbb340e5e0ed027d17187f5d1 (1.23 MB)
File Structure
autC8DB.tmp.tok
Malicious
[Cleaned].au3
Malicious
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
RT_STRING
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
ID:000A
ID:2057
ID:000B
ID:2057
ID:000C
ID:2057
ID:0139
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
Characteristics
No malware configuration were found at this point.
Artefacts
Name
Value Location
PDB Path

????

98092bcbbb340e5e0ed027d17187f5d1

You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙