Malicious
Malicious

c9ce49c6d081bb51fff025c2119db2f8

AutoIt Compiled Script
|
MD5: c9ce49c6d081bb51fff025c2119db2f8
|
Size: 1.72 MB
|
application/x-dosexec

Infection Chain
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
c9ce49c6d081bb51fff025c2119db2f8
Sha1
850f75972ba6f9e14ef4f61c94f0b3e319dde02b
Sha256
a77fe5da2091d1ca156b8d6713e2af40cc0d66449011c59b699cbc652a07ee34
Sha384
9943a0e1714176b4d8e79b9cab0cf3212b43ab8961679635325ce16b21587cbf7da46c75f06fe8b605ea5c5dbf0c5e98
Sha512
68de77d0b9e8004f34b2d4528c18c9282b3c285ce440c307e51b1b713bfc804d700734ac49d7c2d3e6f5c391fd8d05f93429334870a6f9e8eb4a8217e418fa1d
SSDeep
24576:Htb20pNaCqT5TBWgNQ7a1yUsbL8/qhTn/dpE6ATsqjnhMgeiCl7G0nehbGZpbD:ECg5tQ7a13sX8Wnlm5XDmg27RnWGj
TLSH
3A85E12363DE8361C7725273BA66B701AE7F7C250AB0F96B2FD4097DE920121521E673

PeID

Microsoft Visual C++ 6.0 DLL (Debug)
Microsoft Visual C++ 7.0 - 8.0
Microsoft Visual C++ 8
Microsoft Visual C++ 8
Microsoft Visual C++ v6.0 DLL
VC8 -> Microsoft Corporation
File Structure
aut3F94.tmp.tok
Malicious
[Cleaned].au3
Malicious
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
ID:0003
ID:2057
ID:0004
ID:2057
ID:0005
ID:2057
ID:0006
ID:2057
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
RT_STRING
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
ID:000A
ID:2057
ID:000B
ID:2057
ID:000C
ID:2057
ID:0139
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
c9ce49c6d081bb51fff025c2119db2f8 (1.72 MB)
File Structure
aut3F94.tmp.tok
Malicious
[Cleaned].au3
Malicious
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
ID:0003
ID:2057
ID:0004
ID:2057
ID:0005
ID:2057
ID:0006
ID:2057
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
RT_STRING
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
ID:000A
ID:2057
ID:000B
ID:2057
ID:000C
ID:2057
ID:0139
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙