Malicious
eabf6402df0612bd1fbf4106e528a1ef
AutoIt Compiled Script
MD5: eabf6402df0612bd1fbf4106e528a1ef
Size: 1.53 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | eabf6402df0612bd1fbf4106e528a1ef |
| Sha1 | fa3a38a6a0e054afa12506233e6add629b09fe5b |
| Sha256 | 16b42c88cc7140522e273071df1eb98f02850d6a69a4ffbe20b7cd388063ab16 |
| Sha384 | b391f295264d0a246b1fbf1ee3b591d1c291c60b5b3ad8c67ea7ae664a54cdedbdcf84ddb32fbac352a62e103fa47bfa |
| Sha512 | 1155915cc33ea852a52186097dd3822e89f2a3ec41b2c3e9c57837c3a82e70ddee92227e006bd60e91089f7907b99d364af497c698cb406f1e7ca3f517de9574 |
| SSDeep | 24576:wrsRcbYKNp03n4gZWmA7OABU5CpU8xPhuyHyCH+8xc9jeYu+gXTk0kyI:wrsabNNp03FWmA7O95iUUPwULH+8Ff+H |
| TLSH | 7B6523956BD000AAD87BA3B89AF322536775BCC517F4D3CF624082A92E339C4717B746 |
PeID
Microsoft Visual C++ 8.0 (DLL)UPolyX 0.3 -> delikon
Malicious
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
Structural branches: 7
STICH kept: 1secondary ignored: 6
bin
5img
1Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe>pe:autoit>pe:autoit
Shape
pe:exe>pe:autoit>pe:autoit
malicious
3 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Authenticode present at 0x173C00 size 10680 bytes |
| Info | PDB Path: wextract.pdb |
Malicious
No malware configuration was found at this point.
You must be signed in to view YARA rules.