Malicious
Malicious

f755ebe2ed76ab11cee2903e27d4b395

VBScript
MD5: f755ebe2ed76ab11cee2903e27d4b395
Size: 1.37 KB
text/vbscript
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score Low
MD5 f755ebe2ed76ab11cee2903e27d4b395
Sha1 e57124347afc0610abc9053cf0579c16a9f8bd21
Sha256 065c8ca7be5f42b2c5f595183f252ef70605f24410a1f3ba11dc8dc81451aa89
Sha384 1cced064956173c9bc028302d3ddc3626f8b03f821e3fe8a678ef240dc9177ebc124a061fc680e294123e8bfd4a6930a
Sha512 0d4efeadbe7b31bfcda88cab7228dec89f1bb7ad029fe3898e04ef776cd5b41e8ec34fcfc855cdca82f0c5039cebe113754b3c34295e02a018422e08da9baa70
SSDeep 24:9A0IoNTP/V1zVEARAa493JbBlaj3hMWaZl34//T7NBBTsBX8EJJvLiUPpv:edkjXzNRC5A8OThBKX8EJJveI
TLSH 5B21F10BEE04C9610042F49F297396AFAE56F49750C068C5709E8051BF8B186C9BEFF3
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path scr:vbs~T1027~T1059~T1059.005~T1105
Shape scr:vbs
malicious 1 nodes
Command (COM trace) #1 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
Command (COM trace) #2 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
Command (COM trace) #3 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
Command (COM trace) #4 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
Command (COM trace) #5 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
Command (COM trace) #6 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
Command (COM trace) #7 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
Command (COM trace) #8 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
Command (COM trace) #9 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
Command (COM trace) #10 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
Command (COM trace) #11 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
Command (COM trace) #12 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
Command (COM trace) #13 UNKNWOWNmalicious
C:\winhuhuhuhuhuhuhuhuhuhuhu
Dropped path (COM trace) #1 PATHmalicious
C:\winhuhuhuhuhuhuhuhuhuhuhu
Trace COM ordonnée UNKNWOWNmalicious
line 8huhuhuhuhuhuhuhuhuhuhu
URLs in VB Code - #1 URIsuspect
http:/huhuhuhuhuhuhuhuhuhuhu
URLs in VB Code - #2 URIsuspect
http:/huhuhuhuhuhuhuhuhuhuhu
URLs in VB Code - #3 URIsuspect
http:/huhuhuhuhuhuhuhuhuhuhu
URLs in VB Code - #4 URIsuspect
http:/huhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
No malware configuration was found at this point.
Command (COM trace) #1 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
f755ebe2ed76ab11cee2903e27d4b395
Command (COM trace) #2 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
f755ebe2ed76ab11cee2903e27d4b395
Command (COM trace) #3 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
f755ebe2ed76ab11cee2903e27d4b395
Command (COM trace) #4 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
f755ebe2ed76ab11cee2903e27d4b395
Command (COM trace) #5 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
f755ebe2ed76ab11cee2903e27d4b395
Command (COM trace) #6 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
f755ebe2ed76ab11cee2903e27d4b395
Command (COM trace) #7 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
f755ebe2ed76ab11cee2903e27d4b395
Command (COM trace) #8 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
f755ebe2ed76ab11cee2903e27d4b395
Command (COM trace) #9 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
f755ebe2ed76ab11cee2903e27d4b395
Command (COM trace) #10 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
f755ebe2ed76ab11cee2903e27d4b395
Command (COM trace) #11 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
f755ebe2ed76ab11cee2903e27d4b395
Command (COM trace) #12 UNKNWOWNmalicious
schtashuhuhuhuhuhuhuhuhuhuhu
f755ebe2ed76ab11cee2903e27d4b395
Command (COM trace) #13 UNKNWOWNmalicious
C:\winhuhuhuhuhuhuhuhuhuhuhu
f755ebe2ed76ab11cee2903e27d4b395
Dropped path (COM trace) #1 PATHmalicious
C:\winhuhuhuhuhuhuhuhuhuhuhu
f755ebe2ed76ab11cee2903e27d4b395
Trace COM ordonnée UNKNWOWNmalicious
line 8huhuhuhuhuhuhuhuhuhuhu
f755ebe2ed76ab11cee2903e27d4b395
URLs in VB Code - #1 URIsuspect
http:/huhuhuhuhuhuhuhuhuhuhu
f755ebe2ed76ab11cee2903e27d4b395
URLs in VB Code - #2 URIsuspect
http:/huhuhuhuhuhuhuhuhuhuhu
f755ebe2ed76ab11cee2903e27d4b395
URLs in VB Code - #3 URIsuspect
http:/huhuhuhuhuhuhuhuhuhuhu
f755ebe2ed76ab11cee2903e27d4b395
URLs in VB Code - #4 URIsuspect
http:/huhuhuhuhuhuhuhuhuhuhu
f755ebe2ed76ab11cee2903e27d4b395
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙