Suspect
MS Office Document
MD5: 12c5e6b81f3635de5d0c56418afa3cee
Size: 12.51 MB
application/vnd.ms-office
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | 12c5e6b81f3635de5d0c56418afa3cee |
| Sha1 | 54d85ce60781543edd50fc1fa4adbbf4c27118e3 |
| Sha256 | ede450e3c9f6bdfc7de2fbda91eac908510f970a1e1e17bebb8fb9ecd1721342 |
| Sha384 | ebe6982035e3c12b49da41716f141a2782e39ffb15702ece357729f867c324819f4b1387e828835b0477b0eb36a4aaed |
| Sha512 | 6e463d991b6b02dae6c50158de2cb3894c23046210bdb1e4322cce2da4ab532e4a8ac6e9d18ddd56f82888a6bbd2b8efb295143bd5f5baaf8e4fce3bb41cd5e2 |
| SSDeep | 196608:NnCtVYqI5MvbWEpKkqHIJqKxnCtVYqI5MvbWEpKkqNnCtVYqI5MvbWEpKkqrnCt9:NCXvI5MvHxTJPCXvI5MvHxiCXvI5MvHu |
| TLSH | 34C622216BF88064F1FB6B78B9BD80A14A36BC658E26C01F0374395E18B1F54D9B6737 |
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
Structural branches: 10
STICH kept: 2secondary ignored: 8
bin
7img
1Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
ole:doc>pe:dll>pe:dll
Shape
ole:doc>pe:dll>pe:dll
3 nodes
Path
ole:doc>pe:dll
Shape
ole:doc>pe:dll
2 nodes
PE Layout
UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential