Malicious
a8e6456468f0dbb0a7bb4bf688f9afc8
AutoIt Compiled Script | MD5: a8e6456468f0dbb0a7bb4bf688f9afc8 | Size: 709.63 KB | application/x-dosexec
AutoIt Compiled Script
MD5: a8e6456468f0dbb0a7bb4bf688f9afc8
Size: 709.63 KB
application/x-dosexec
Infection Chain
Summary by MalvaGPT
Characteristics
|
Hash | Hash Value |
|---|---|
| MD5 | a8e6456468f0dbb0a7bb4bf688f9afc8
|
| Sha1 | 560125b207ddc8762f87c979d9e8ec39354da533
|
| Sha256 | 2d1ebc58876a03dbf8c42cf167166654747752d66698d66231f1a3ebc8308c59
|
| Sha384 | 8a14584b327fac037072d96cdf8485a156ae4e0e23a51f44f3118995b47c6f4582bcaed8ae455a3643321a27cda03746
|
| Sha512 | f6b6309b652b70e96ecd489bdb321b3977e3379b1543fb83ef6d15e61a9d6b32dbfd4614e77edc1ed8c3767d3d2995855e1f61618bbc38aebcb1f10e55226f48
|
| SSDeep | 12288:KOv5jKhsfoPA+yeVKUCUxP4C902bdRtJJPiwjc/f7V3Bk4xl8HcrmEIHL6Qsg8YG:Kq5TfcdHj4fmbV0fJ3BGSGkg5iEK6FyR
|
| TLSH | A1E423106488CCA2E661633581BECF5509537E32CF49B76D67E9F697B8B1343988332E
|
PeID
Microsoft Visual C++ v6.0 DLL
Packer=UPX Compresor..Gratuito... www.upx.sourceforge.net
UPX -> www.upx.sourceforge.net
UPX Modified >> *$igBy Ahmed18
UPX v0.89.6 - v1.02 / v1.05 -v1.24 -> Markus & Laszlo (overlay)]
UPX v1.25 (Delphi) Stub
UPX v3.0
File Structure
a8e6456468f0dbb0a7bb4bf688f9afc8
Malicious
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
UPX0
UPX1
.rsrc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
ID:0003
ID:2057
ID:0004
ID:2057
ID:0005
ID:2057
ID:0006
ID:2057
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
RT_STRING
ID:0007
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
Informations
|
Name0 | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
a8e6456468f0dbb0a7bb4bf688f9afc8 (709.63 KB)
File Structure
a8e6456468f0dbb0a7bb4bf688f9afc8
Malicious
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
UPX0
UPX1
.rsrc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
ID:0003
ID:2057
ID:0004
ID:2057
ID:0005
ID:2057
ID:0006
ID:2057
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
RT_STRING
ID:0007
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.