Suspicious
Suspect

bbde72af760c3522d5acba1a22c135a9

VBScript
MD5: bbde72af760c3522d5acba1a22c135a9
Size: 8.95 MB
text/vbscript

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 bbde72af760c3522d5acba1a22c135a9
Sha1 e4efda5affefdf6630d305992576acc66ec780f6
Sha256 e8c96feda6791f0acdee4c084e0d438f7792a1d33aa31de036fdb6408ca7db97
Sha384 3528b3c9bcc9662c0868b9422ce2aaeb20de9eaa9356ab25b52f691b8c4ae5c3b564fa5536ffbd7e59636450c1d4030e
Sha512 66e33d716846cbae34f2427cf2e7dda45e816f75587e3c2ad10cd08bf816d8c38542a7ef5dccf5cfaab5326610af197051826f058c64dfcdea08d27080b0a151
SSDeep 98304:Bw+jWkfRo9uhUUOI0qBainVTwdNyoPWdwU4Bbt+s:+mXCqryF3U4T
TLSH CE969D03E39181ECC46AC1748367AB33EA73F8894634B2AB5BD85B212F66F505F0D759
PeID
Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft Team
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.data
.rdata
.pdata
.xdata
.bss
.idata
.CRT
.tls
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.data
.rdata
.pdata
.xdata
.bss
.idata
.CRT
.tls
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙