Malicious
Malicious

2871da407c3748ba990af302059898c5

Share on LinkedIn
Print
MS Office Document
MD5: 2871da407c3748ba990af302059898c5
Size: 860.16 KB
application/vnd.ms-office
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 2871da407c3748ba990af302059898c5
Sha1 b7564019bb3251b2f8567f02eb2163ead00418e9
Sha256 f0157306c1872b748e2a1c4edc12b516e0786fa01c61e9903f67d120c6ae3a90
Sha384 656c1bad434baaf2dd2def136f4f5f33da7a0523843657e4d89f0e8fdd09da6e3cfc02cf97a372428dcfe1ccf3a86085
Sha512 a63cd44c8e56f1703b4a5dd7005c4cce5c4e5f2a133a63005a1f971ce009fd8a9af6f8edf7daf345384abe8891396e4a45cbe46bc6425c2032c112726340a563
SSDeep 24576:lJgw+nDC+YhXsDM/rFLBOzU+tamaTL6nOPdLfLN6:lJgwGC+YZsIDdBOztahTwCLzk
TLSH DD0523D7B2A07132C732563243BF42B11636AE1CE770B63725AD32C92F7609079A9BD4
Root Entry
Malicious
䡀䌏䈯
Overlay_e0cc9445.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rdata
.sxdata
.bss
.idata
.CRT
.tls
.rsrc
4
䡀䈖䌧䠤
䡀㬿䏲䐸䖱
䡀㽿䅤䈯䠶
䡀䈏䗤䕸䠨
䡀䓞䕪䇤䠨
䡀䕙䓲䕨䜷
䡀䌍䈵䗦䕲䠼
䡀䒌䓰䑲䑨䠷
䡀㼿䕷䑬㭪䗤䠤
䡀㼿䕷䑬㹪䒲䠯
䡀㿿䏤䇬䗤䒬䠱
䡀䖖㯬䏬㱨䖤䠫
䡀䘌䗶䐲䆊䌷䑲
䡀䄕䑸䋦䒌䇱䗬䒬䠱
䡀䇊䌰㾱㼒䔨䈸䆱䠨
䡀䈏䗤䕸㬨䐲䒳䈱䗱䠶
䡀䑒䗶䏤㾯㼒䔨䈸䆱䠨
䡀䇊䌰㮱䈻䘦䈷䈜䘴䑨䈦
䡀䇊䗹䛎䆨䗸㼨䔨䈸䆱䠨
䡀䑒䗶䏤㮯䈻䘦䈷䈜䘴䑨䈦
SummaryInformation
ScriptFile
MainExeFile
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

Structural branches: 3 STICH kept: 1secondary ignored: 2
bin 2

Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path ole:doc>bin>scr:vbs~T1059.005
Shape ole:doc>bin>scr:vbs
technique3 nodes
An error has occurred. This application may no longer respond until reloaded. Reload 🗙