Malicious
AutoIt Compiled Script
MD5: fa8a033af2e630fa87b00d0f3c8060bf
Size: 12.58 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | fa8a033af2e630fa87b00d0f3c8060bf |
| Sha1 | 00c2e7d99c933104d0f0c54858127128b6e0411b |
| Sha256 | bfce5b0c71ef1e46a4c6974182bb8c4ab955478ba216ab1a182593c41d9bd73b |
| Sha384 | 584e43d7d959de0bc7c2a9f25a29860cbd24861482a4d974b33d8c23a1470e0bfba0fc44ec9e9add97557d01a308ccbc |
| Sha512 | 50251589292d4a32aaa3e312e9645de3c4b9c3af87c45f6a8725d24375ab6b5875a12e8cbdd2a09b1febab3fb3c4a96dee84c1f4c3b965557c99059fb9a81113 |
| SSDeep | 24576:8hfwoTm/a+jFlpQ5YUz8q3T9eYMyAQskI2aI1DNBhtLAayGGe/s:GU/HnpsYqjsYE0I2vNLtLd9G |
| TLSH | B6C623161BD105B4E4B647B498E78ADB96317CE64AB0D6DF3398B68E0F33581D23270B |
PeID
Microsoft Visual C++ 8.0 (DLL)
Malicious
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
Structural branches: 7
STICH kept: 2secondary ignored: 5
bin
3img
2Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe>pe:autoit>pe:autoit
Shape
pe:exe>pe:autoit>pe:autoit
malicious
3 nodes
Path
pe:exe>pe:rsrc>pe:autoit
Shape
pe:exe>pe:rsrc>pe:autoit
3 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | PDB Path: wextract.pdb |