Malicious
AutoIt Compiled Script
MD5: fce1b61c249b56a953c50a942eebfa91
Size: 1.53 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | fce1b61c249b56a953c50a942eebfa91 |
| Sha1 | 2c56e2233311618ba43bff656d306138cee6c09b |
| Sha256 | db8ce34cefcc83edd0e245844f35373828004706eb41f952ad0c2522e10e4b9c |
| Sha384 | b22a246c24bdc3e3c32e4ccc3af5beae056afce854b1e6a4afde23873b42ae608e1a5c0087aa4762b76e08df3c8cf77e |
| Sha512 | 2b2ebfe8f97ea83244e21c6d4acfc6dd0b3c8cde0a998a3cd1f990d43658825ddc87f6f3a2b1b0a2f37d77fe91163a16dc354334d951dc9e3d162d528b7a8c11 |
| SSDeep | 24576:lrsRcbYKNp03n4gZWmA7OABU5CpU8xPhuyHyCH+8xc9jeYu+gXTk0kye:lrsabNNp03FWmA7O95iUUPwULH+8Ff+l |
| TLSH | DE6523856BD000AAD87BA3B89AF322536775BCC517F5D3CF624082A92E339C4717B746 |
PeID
Microsoft Visual C++ 8.0 (DLL)UPolyX 0.3 -> delikon
Malicious
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
Structural branches: 7
STICH kept: 1secondary ignored: 6
bin
5img
1Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
pe:exe>pe:autoit>pe:autoit
Shape
pe:exe>pe:autoit>pe:autoit
malicious
3 nodes
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Authenticode present at 0x173C00 size 10320 bytes |
| Info | PDB Path: wextract.pdb |