Malicious
AutoIt Compiled Script
MD5: bb8c32e7142b83eb891d2be7f20352cf
Size: 2.16 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | bb8c32e7142b83eb891d2be7f20352cf |
| Sha1 | 501b5c01a55474d8fc07cff23b8c14108a690e71 |
| Sha256 | cb336a6e3fc0e9aa62b5768bffc207c09b372546636a5c58057a1b6d0708df06 |
| Sha384 | 8ad508dd60328225923e6013115b6a7b0a028e783a488092d1b0888d5488cf480f8c54cd6b1efcd5485a2615c14de725 |
| Sha512 | 381e0626d18b20d7a12675fadce05edef03626fb41e99d895d3fcbd97ba57f834d9964f7d8ab71c22c9d450b6177c633a4b594a0dafc4c817aa4e865c3b2550b |
| SSDeep | 49152:09CUaz8YKb+hU58oulzMThQJ/z3ChDOgYYcRcfCD:0YFKiyKoAzWQpsOnyfCD |
| TLSH | 5CA5331319ED0AE4FA795730A8F207139730FE562B7A878F1348D09F4F16AE1997934A |
PeID
Microsoft Visual C++ 8.0 (DLL)
Malicious
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
Structural branches: 8
STICH kept: 2secondary ignored: 6
bin
4img
2Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe>pe:autoit>pe:autoit
Shape
pe:exe>pe:autoit>pe:autoit
malicious
3 nodes
Path
pe:exe>pe:rsrc>pe:autoit
Shape
pe:exe>pe:rsrc>pe:autoit
3 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Overlay extracted: Overlay_df192a41.bin (640 bytes) |
| Info | PDB Path: wextract.pdb |