Suspicious
Suspect

c759af0c87525319ffb20b0b8700331c

JavaScript
MD5: c759af0c87525319ffb20b0b8700331c
Size: 17.6 MB
application/javascript

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 c759af0c87525319ffb20b0b8700331c
Sha1 26670f1d731864dee83c4f5effec3949661cca4f
Sha256 bea71312be331c8cffa99dc028e397b92fb5c8c5702866dced41474bd133c186
Sha384 8b51d138cf26434397897ef2986238bc40398b97e57c219575f4b2778003cc4db9a17a70ab00102050607bc32b316175
Sha512 714d0159a353412bd8edbdb03eb05278c657d19b89040a6f0d561900351f0e37cae39e7436c8d8019b25ca788d6659bafc105e0a140695f182916bd23d78be6f
SSDeep 393216:+0L1F2FGh0zgIfUKOc0XEAphVtnIwQSg+nFoIykzw8xvZ7X2:LpsFGhQ58KP0RphDBo+FoIygw+vZ7
TLSH A80733A877444D64F8FF423CA9D08A22A2F1B5246B95D7AF07F10E221D272D4DF787A1
PeID
Microsoft Visual C++ 8.0Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLL
Overlay_a8a9b44f.bin
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.fptable
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
ID:0002
ID:0
ID:0003
ID:0
ID:0004
ID:0
ID:0-preview.png
ID:0005
ID:0
ID:0006
ID:0
ID:0007
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
3 / 3
Path pe:exe~T1059.007>pe:rsrc>bin
Shape pe:exe>pe:rsrc>bin
technique3 nodes
Path pe:exe~T1059.007>pe:rsrc>img
Shape pe:exe>pe:rsrc>img
technique3 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Overlay extracted: Overlay_a8a9b44f.bin (17255703 bytes)
Info
PDB Path: t$mn
Overlay_a8a9b44f.bin
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.fptable
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
ID:0002
ID:0
ID:0003
ID:0
ID:0004
ID:0
ID:0-preview.png
ID:0005
ID:0
ID:0006
ID:0
ID:0007
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙