Malicious
Malicious

e01cd8c64cd19229d0cdf1ad1a3d6df6

AutoIt Compiled Script
|
MD5: e01cd8c64cd19229d0cdf1ad1a3d6df6
|
Size: 1.93 MB
|
application/x-dosexec

Infection Chain
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
e01cd8c64cd19229d0cdf1ad1a3d6df6
Sha1
1310c8bb09fc6744503aa0647864a4f651f408d7
Sha256
c4d5abf2180f36a57e9ec5d9cb2bef0d34eb3c4261911f55281f53d61c4f267c
Sha384
707a5023b4400e0491ff248c9aa85e5c6c13592b695b1bea448f7f62bbc754351bf04b026a78e85cf741db3693e7daee
Sha512
5b6a823fc8064a07c42243c9edf16833b92de95c427ad7616b78b08256ad2b01dd405dc83a00e82e20a95c4cb3edd3dcf95b1b76f7b8e8c6066f88a340933d2a
SSDeep
49152:62EYTb8atv1orq+pEiSDTj1VyvBaaDcRvdB1eOKdNALoOhG+:nXbIrqnVBRKPXOw
TLSH
9395D00973A4429DFEABD1B7CA23C607D7B178460277862F01A49B766F337715A2E321

PeID

Microsoft Visual C++ 8.0 (DLL)
Microsoft Visual C++ v6.0 DLL
Pe123 v2006.4.4-4.12
File Structure
aut801.tmp.tok
Malicious
[Cleaned].au3
Malicious
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
ID:0003
ID:2057
ID:0004
ID:2057
ID:0005
ID:2057
ID:2057-preview.png
RT_STRING
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
ID:000A
ID:2057
ID:000B
ID:2057
ID:000C
ID:2057
ID:0139
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

PDB Path: t$di

e01cd8c64cd19229d0cdf1ad1a3d6df6 (1.93 MB)
File Structure
aut801.tmp.tok
Malicious
[Cleaned].au3
Malicious
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
ID:0003
ID:2057
ID:0004
ID:2057
ID:0005
ID:2057
ID:2057-preview.png
RT_STRING
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
ID:000A
ID:2057
ID:000B
ID:2057
ID:000C
ID:2057
ID:0139
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙