Suspicious
Suspect

0e27983a8e40f72ada58180d60c8aba8

ZIP Archive
MD5: 0e27983a8e40f72ada58180d60c8aba8
Size: 584.48 KB
application/zip

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 0e27983a8e40f72ada58180d60c8aba8
Sha1 93b955a3ce61a84d998f679ee4a9015441f6f567
Sha256 399e565a5903bf72e8fbc67cd1ca7380c2015db3a02958709c11229a6188fe45
Sha384 d3c328b5b4272ce3199d2ae3eaa1f24f39cb8961dc4d056330caf825a67f9094ae21d0b56a6c4ac48bf905a57316365a
Sha512 a98e8d036735cc342bbbc995f6688537ab04c4fb9e5daa51cacdba79cafb7bd1206b319e50f97a0f91973931c968bb60b6ee001291374a2d1232e22cdb310aa2
SSDeep 12288:j6wlOMWROC/FTeHo22Qm7NzofOr68mueA924EwC0:b4MQOC/gHozN7NzomW8UA9f
TLSH 04C42304340641D5835A2B1EAEC4E7E0BEB560DBFA1CF940AADD7ED06DE96A177C1833
Application.cmd
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
dynasm.txt
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

Structural branches: 2 STICH kept: 1secondary ignored: 1
bin 1

Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path arc:zip>pe:exe
Shape arc:zip>pe:exe
2 nodes
Application.cmd
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
dynasm.txt
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙