Malicious
Malicious

f618b2679a05e1f647cb2aa2aabff3e0

AutoIt Compiled Script
|
MD5: f618b2679a05e1f647cb2aa2aabff3e0
|
Size: 1.75 MB
|
application/x-dosexec


Print
Infection Chain
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
f618b2679a05e1f647cb2aa2aabff3e0
Sha1
4cf44690869978327babc4a83d53d4a18a46530f
Sha256
0ea246c52245f5dd919aead5707821080a13b70af25218973a14f373a4691ec3
Sha384
7324c96e301ad416784ad701daffb027159f6648cb80f235f54b91dde61c57e8ae41f60225db9bafd3a632f14e0dc177
Sha512
5db980112ad2d1507c3b6a7b5f2bf1e3545ca856635106bce1ec51a477d8233af01c4f49c2daeb6af3aee5c712c64ddca7e2b62882c3b1d8c28232373cd1b827
SSDeep
49152:x1g5tQ7aaHM3nA+5fLNiXicJFFRGNzj3:7g56G3nv7wRGpj3
TLSH
D585E12363DD8365C7B25173BA25B701BE7B7C2506A5F96B2FD40D3DE820222521EA73

PeID

Microsoft Visual C++ 6.0 DLL (Debug)
Microsoft Visual C++ 7.0 - 8.0
Microsoft Visual C++ 8
Microsoft Visual C++ 8
Microsoft Visual C++ v6.0 DLL
VC8 -> Microsoft Corporation
File Structure
aut9C81.tmp.tok
Malicious
[Cleaned].au3
Malicious
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2057
ID:0002
ID:2057
ID:0003
ID:2057
ID:0004
ID:2057
ID:0005
ID:2057
ID:0006
ID:2057
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
RT_STRING
ID:0007
ID:2057
ID:0008
ID:2057
ID:0009
ID:2057
ID:000A
ID:2057
ID:000B
ID:2057
ID:000C
ID:2057
ID:0139
ID:2057
RT_RCDATA
ID:0000
RT_GROUP_CURSOR4
ID:0063
ID:2057
ID:00A9
ID:2057
RT_VERSION
ID:0001
ID:2057
RT_MANIFEST
ID:0001
ID:2057
f618b2679a05e1f647cb2aa2aabff3e0 (1.75 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙