Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 af321683499bd54b12d7df5d0b071637
Sha1 2ab860ac2b210d3a3c971c4f7e623513d3d100fc
Sha256 4de46bec907d6e1cb1abd803a93ca97d7f589c98372e01ebd4e0b5b7272a6fab
Sha384 ad65b0866abfc8f185e3dc38c364ab9673f48cd2fadaab2d70c947516e2c7ec6b2b8bce186ef8ecb100f1762f98934da
Sha512 bfaf38023d55ca491bfcfb6d571cc5f3647337af2a8843bac2a77e935b1233ced0ea924e83e3ae35480a8bce4d1efe0690e7065f16d23afe034a271b53f1ae88
SSDeep 49152:h7mb3+LHHBHlQ5Y3Eb5V3prpafW8eQXOTHFH20HQFMHV0eYd5gjXiw2CcUNKRovn:34j
TLSH 7196E55B93D403AA11B2B106E84D396AF712C4BC6B3693252D5C693D33B6638873F5F8
URLs in VB Code - #1 URIsuspect
http:/huhuhuhuhuhuhuhuhuhuhu
URLs in VB Code - #2 URIsuspect
https:huhuhuhuhuhuhuhuhuhuhu
URLs in VB Code - #3 URIsuspect
https:huhuhuhuhuhuhuhuhuhuhu
URLs in VB Code - #4 URIsuspect
https:huhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
No malware configuration was found at this point.
URLs in VB Code - #1 URIsuspect
http:/huhuhuhuhuhuhuhuhuhuhu
af321683499bd54b12d7df5d0b071637
URLs in VB Code - #2 URIsuspect
https:huhuhuhuhuhuhuhuhuhuhu
af321683499bd54b12d7df5d0b071637
URLs in VB Code - #3 URIsuspect
https:huhuhuhuhuhuhuhuhuhuhu
af321683499bd54b12d7df5d0b071637
URLs in VB Code - #4 URIsuspect
https:huhuhuhuhuhuhuhuhuhuhu
af321683499bd54b12d7df5d0b071637
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙