Malicious
WSF File
MD5: faa3c26f1983cd7f6179ade784f43269
Size: 12.48 MB
application/xml
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | faa3c26f1983cd7f6179ade784f43269 |
| Sha1 | f61e521af2089a4e366a18ffb1bf888c48496978 |
| Sha256 | f2fcc2c65878afe01688efe9183a3f30cb13e5a5c822c470412b880a881ba34f |
| Sha384 | 5d4722215d3e78cbb4d69634dcd77abf8222bb93027beae6c84d7b076b95102dfa379268693e66dfb1e44c56139bdbba |
| Sha512 | 3b8ebb671ce782d41c0903b78312f751a938159787fcca6914002baac1854671d2bd564074840e8a01f9b500c290077142028c2896b88aaed7e3de3d6f98977d |
| SSDeep | 98304:JMVTs3asyuc+KuD3PlxOYoHwfLk3vSmaR0+Mc4AN0edaAHDfysrTlt:JAsKsyfATObAbN0G |
| TLSH | 93C64A8563FC1A35E3B747359970627A05767C2AADC1D78E3A89BA0D3971240FCF0A27 |
PeID
MASM/TASM - sig4 (h)Microsoft Visual C++ 8.0 (DLL)Microsoft Visual C++ v6.0 DLLUPolyX 0.3 -> delikon
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
5 / 5
Path
pe:exe>pe:exe>bin
Shape
pe:exe>pe:exe>bin
malicious
3 nodes
Path
pe:exe>pe:exe>html
Shape
pe:exe>pe:exe>html
malicious
3 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Overlay extracted: Overlay_02cc78d3.bin (12210984 bytes) |
| Info | |