Suspect
MS Office Document
MD5: 34e491628226e530a2a298f6e1a5c960
Size: 11.7 MB
application/vnd.ms-office
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | 34e491628226e530a2a298f6e1a5c960 |
| Sha1 | 5bce0848e9583ce06feb197cfe8b5d855687c966 |
| Sha256 | 434ffec81e6c1be4873754fa5854fd6c5b3d387a4b9f2119a7bfec8bbe181d9f |
| Sha384 | 2de7c7ca44429c2f4677858fe435749fdc063183a3184e18c071ebda481ac9a339b63ff91bc345eb8f89f6ac1bf86cd8 |
| Sha512 | 73269f84d3f647f855c5f3f5d2ab3b156d4e624c8b1ff246e89065b9563e7eedcdf754b43349b54227932102ab16775df5339b671eb6f0c1d6fb57cb9cb43354 |
| SSDeep | 196608:QrnLYG3zDhukOUrnLYG3zErnLYG3zSrnLYG3z8rnLYG3zgrnLYG3z:QbDDDgvUbDDEbDDSbDD8bDDgbDD |
| TLSH | 8FC6233267FD4918E1F36778ED3A91E291367C65CF12C08F2654786E6871E8096A333B |
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
Structural branches: 13
STICH kept: 4secondary ignored: 9
bin
8img
1Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
4 / 4
Path
ole:doc>pe:dll>bin>pe:dll
Shape
ole:doc>pe:dll>bin>pe:dll
4 nodes
Path
ole:doc>pe:dll>pe:dll>pe:dll
Shape
ole:doc>pe:dll>pe:dll>pe:dll
4 nodes
PE Layout
UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential