Suspicious
Suspect

d122a5aa463b5ba991e9359760746a30

VBScript
MD5: d122a5aa463b5ba991e9359760746a30
Size: 8.95 MB
text/vbscript

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 d122a5aa463b5ba991e9359760746a30
Sha1 b1b7e69d02b3627a729ee7c27977d7e100ebeb15
Sha256 a06673af1f07487237fe4a60e4a774f4e0f87a19150b0e16ea385caa3cabccb7
Sha384 e4f4fe035f0661bfbf402a9a684d6bffc1a736f4558df27fcf98cf52450d71a1c63c43fb26ea2e9f3ccfdc3502cae395
Sha512 bf067331f7ced4ae831ddaddea3c7ea7a23a517f9ed00bac3614bce966078098c6e063320e868a334feede836f1d110c7efb772aaa7ef10504a0e2203755bfdf
SSDeep 98304:Xw+jWkfRo9uhUUOI0qBainVTwdNyoPWdwU4BbI+s:gmXCqryF3U4C
TLSH 29969D03E39181ECC46AC1748367AB33EA73F8894634B2AB5BD85B212F66F505F0D759
PeID
Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft Team
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.data
.rdata
.pdata
.xdata
.bss
.idata
.CRT
.tls
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe
Shape pe:exe
1 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.data
.rdata
.pdata
.xdata
.bss
.idata
.CRT
.tls
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙