Suspect
AutoIt Compiled Script
MD5: e13fdce3cffc2770af4a592d4c3feb27
Size: 1.8 MB
application/x-dosexec
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | e13fdce3cffc2770af4a592d4c3feb27 |
| Sha1 | 400f33df62f725952b3fa03041f1fd63e2707d37 |
| Sha256 | f19c9c45a0ec3b7286c920db12cb280f751d7a3d6deca808dce90339539f682a |
| Sha384 | 4d2005fc727cf6d9319d1d3095bd1717000e04713943836085120c22809962e298c61b5b117ec162437a4f7af6fe6e13 |
| Sha512 | 9eebdebef83b06a83bef25e3212ef84b7eda9d4e1c58ecd8001191cba3c7b6ab5338c77fde61295d897072da2742c68887fc4302acfb93cdd3e4b90b419f46a5 |
| SSDeep | 49152:PuShAHNYuK+dhLJEwibkrfEGrBvUkvdX:GSnuxdhLJt86fXrBvp1X |
| TLSH | E485234217C544B5F534AB3084F341A791B6FC421AE4AB5F328CB54E2EB3BE17A36B16 |
PeID
Microsoft Visual C++ 8.0 (DLL)
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
Structural branches: 7
STICH kept: 1secondary ignored: 6
bin
4img
2Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe>pe:autoit
Shape
pe:exe>pe:autoit
2 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | PDB Path: wextract.pdb |
PE Layout
UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential