Malicious
9c1bee9ed7cc87bf6a874b71fea8e178
AutoIt Compiled Script
MD5: 9c1bee9ed7cc87bf6a874b71fea8e178
Size: 2.15 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | 9c1bee9ed7cc87bf6a874b71fea8e178 |
| Sha1 | 5260b728d1027219cd355b9ded2110897923d00c |
| Sha256 | 11621978916ef99d1c24cc4c7355d5a05d862dc9769b23f6685a21910d334726 |
| Sha384 | c57e6a9beed44664fbe76759a4c62f09c92898f60d74072c382fd1622625cf564a446a27443dbd0dbd23798884d7bcd1 |
| Sha512 | c847137a1309b31a732cc7e561c24598e6ca5e6b787319614385f949d752c322c1d53ce412d3a6d58343c7be74f5dd2d60d2b1ac0aea78a39a1f6e9c5b99cf65 |
| SSDeep | 49152:ojYejNFHEFG95gGupygLmV51WPvpLINbmFTtOCYop:ojYeRCA5gGupyh5WvpLIN6TtOCRp |
| TLSH | 17A5235386E78C5AE4266734CEE245978732BDA5C668ABDF13E03E8E1F724C1B430752 |
PeID
Microsoft Visual C++ 8.0 (DLL)UPolyX 0.3 -> delikon
Malicious
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
Structural branches: 7
STICH kept: 2secondary ignored: 5
bin
3img
2Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe>pe:autoit>pe:autoit
Shape
pe:exe>pe:autoit>pe:autoit
malicious
3 nodes
Path
pe:exe>pe:rsrc>pe:autoit
Shape
pe:exe>pe:rsrc>pe:autoit
3 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | PDB Path: wextract.pdb |
Malicious
No malware configuration was found at this point.
You must be signed in to view YARA rules.