Malicious
Malicious

f569555c7b3a65ca52d5c633665e920e

AutoIt Compiled Script
|
MD5: f569555c7b3a65ca52d5c633665e920e
|
Size: 1.15 MB
|
application/x-dosexec

Infection Chain
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
f569555c7b3a65ca52d5c633665e920e
Sha1
b4d939d1f612091624394831d5ca9041d75a27d4
Sha256
3d5c6d39c05f201d05895f0f360cb80e7c1a6aae3e5dd1f6fdf1c4adc2b01971
Sha384
f8983c8ed2fa8cbf876755dbbdaa840c0ddb230bd840bef64f7260b3b05daf91967cea6a9bdb0181094fa6a53f69d316
Sha512
6139a6e8ace300c4ea21b56da519725f1f2c81b19e002b8f5c353b573b19e6fb4f4066a23d69d28b96fa9a153bbe15bfa4f102b5818fcab132d68b730d6bb7f6
SSDeep
24576:Ztb20pkaCqT5TBWgNQ7a/4H444tLO6ybuS9mj6A:qVg5tQ7a/4H444tLobuS905
TLSH
6735BE1227DD8270C372A9737B15B721EE7B7C2506A1F95B2FD4093EA8A01A1731F663

PeID

Microsoft Visual C++ 6.0 DLL (Debug)
Microsoft Visual C++ 7.0 - 8.0
Microsoft Visual C++ 8
Microsoft Visual C++ 8
Microsoft Visual C++ v6.0 DLL
VC8 -> Microsoft Corporation
File Structure
aut1ED5.tmp.tok
Malicious
[Cleaned].au3
Malicious
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
ID:2057-preview.png
ID:0003
ID:2057
ID:0004
ID:2057
ID:0005
ID:2057
ID:0006
ID:2057
ID:0007
ID:2057
RT_STRING
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
ID:000A
ID:2057
ID:000B
ID:2057
ID:000C
ID:2057
ID:0139
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
Artefacts
Name
Value
PDB Path

????

f569555c7b3a65ca52d5c633665e920e (1.15 MB)
File Structure
aut1ED5.tmp.tok
Malicious
[Cleaned].au3
Malicious
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
ID:2057-preview.png
ID:0003
ID:2057
ID:0004
ID:2057
ID:0005
ID:2057
ID:0006
ID:2057
ID:0007
ID:2057
RT_STRING
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
ID:000A
ID:2057
ID:000B
ID:2057
ID:000C
ID:2057
ID:0139
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
Characteristics
No malware configuration were found at this point.
Artefacts
Name
Value Location
PDB Path

????

f569555c7b3a65ca52d5c633665e920e

You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙