Malicious
MS Office Document
MD5: 0daedf9df48e11709f3f0db6d381b8d0
Size: 32.77 KB
application/vnd.ms-office
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | 0daedf9df48e11709f3f0db6d381b8d0 |
| Sha1 | a1d872328dafd0e4610f382f3ca92309a6cc2db7 |
| Sha256 | a9174413214a6cdb3646d6cf14de3f6b557a5f1e7214a8f27969212907386a31 |
| Sha384 | af5dde7f9f96b7bea39fc889412cd14b480e664c672c625708235f4cedad383cd0f0383f99ca5bb7390cf5d6fc254ec2 |
| Sha512 | 9b62e79b0c111ad8708e09034a1a7684f9cc9def6cf3ffbd7d8a9969a42f53b3c854bdad42413dbd597858c0ab027a7358b7ec098694a778d8acd487f39c7d36 |
| SSDeep | 384:bduz/hO4BNey3M5sCMoXobHoIx5Pey3M5sC0x:ggMeWMmCueWMmCU |
| TLSH | 48E2A40776049331C58607324A2FE7F58B26AC489F671527369BB39C2F739D062B7AE1 |
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
Structural branches: 2
STICH kept: 1secondary ignored: 1
bin
1Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
ole:doc>scr:ps1~T1027~T1059.001
Shape
ole:doc>scr:ps1
malicious
2 nodes
Deobfuscated PowerShell
UNKNWOWNmalicious
featurhuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential