Malicious
AutoIt Compiled Script
MD5: f1c8fcd0a068217c9d35ce071980d9a2
Size: 1.56 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | f1c8fcd0a068217c9d35ce071980d9a2 |
| Sha1 | 3972771753570b92203c2010d5e54f9af059bd80 |
| Sha256 | b007e3f21dc382e21ffdc64e665444bc9494d1d67b82bc7ddf415ba2288af648 |
| Sha384 | eb00a5e9dc2525e70140cd9a6da312f1a3c2bf3b467945a705bd41e4e2c6a819dbe42718e6547f475b201a56ea82561a |
| Sha512 | b2061441a25c86b96dee0cf963908ae5e7f4c3257628946acf48f8089a961fbc29392fd8a7764ae190f8470450782988af068732652a234ff1c66bf7e925f203 |
| SSDeep | 24576:jpyxNQfNF6PADvlQIVsoegaX0cH0AQMV/qB0DO+mDtGzJNaCFh9AXOFif/HO4r:jpKmlFuWlxegAHvQMFqB06+mDAzJNaU0 |
| TLSH | BF75231513E956A8D17263B189F2C23395307C159778D79F12E8AC8B7F33A9AE836313 |
PeID
Microsoft Visual C++ 8.0 (DLL)
Malicious
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
Structural branches: 7
STICH kept: 1secondary ignored: 6
bin
4img
2Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe>pe:autoit>pe:autoit
Shape
pe:exe>pe:autoit>pe:autoit
malicious
3 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | PDB Path: wextract.pdb |
PE Layout
UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential