Malicious
AutoIt Compiled Script
MD5: b279d0bc4e1d35c563090460c238b62e
Size: 2.01 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | b279d0bc4e1d35c563090460c238b62e |
| Sha1 | 1defebed2bc41dbff134f5b73b57969d01c69547 |
| Sha256 | 8a46d5ea2d20041fc3f1f2f9ab60e46247f96acac0677e66255cd563eda1c4b3 |
| Sha384 | 5dd0f4b379e0955a10ce4e9273aa98238c17655e47be5686f43c2efc0d7f8d5fbb2f7c934238f498e063aeb625bc74fe |
| Sha512 | e1e66b420523213e9de1e34a04d754f2cca381ec1cc792e04b4364020716e0cf653db7e6982a48fe7dbe61e9115b3d9c59105b0937b0b44974a2251f482e8bec |
| SSDeep | 49152:PJ4EOrw259zGDtY3hVKV7DTCe/uw1+hKYtg8tqlKSdr8v:PJxKZDE97DTn/uw1vdEJSdw |
| TLSH | AD9523227AE855CBE9964778F9B25103DA313E918FB84BDF22E1718D09335D0BA72317 |
PeID
Microsoft Visual C++ 8.0 (DLL)
Malicious
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
Structural branches: 6
STICH kept: 2secondary ignored: 4
bin
3img
1Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe>pe:autoit>pe:autoit
Shape
pe:exe>pe:autoit>pe:autoit
malicious
3 nodes
Path
pe:exe>pe:rsrc>pe:autoit
Shape
pe:exe>pe:rsrc>pe:autoit
3 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | PDB Path: wextract.pdb |