Suspect
MS Office Document
MD5: 422c2f814cf96d17b182dfc7add9d9ce
Size: 13.54 MB
application/vnd.ms-office
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | 422c2f814cf96d17b182dfc7add9d9ce |
| Sha1 | e07d7e3c91d4bb4365adfc69c05e7bb633e855d1 |
| Sha256 | ba0f697bbdbabdcb48c377aec31dd6c9e09041e952f9903a23a06866cdcdbb88 |
| Sha384 | 939e526d523abf7c9d197186a1a495a0bf7a4019a346f726bc979cecddd7a00e0e220fbea9655e9e9e52f7d376f5fb29 |
| Sha512 | f2571c70aab97d1bdfaf1582a1a8e9b8162aa8a48bed27812f2685c8c2c1f11e4a7cc2b3543b852cfa84a9d85cc6cc811570052cb54e77afa18ac049ac4253fa |
| SSDeep | 196608:5rnLYG3zThukO1rnLYG3z9rnLYG3zrrnLYG3zWrnLYG3z+rnLYG3z0rnLYG3z:5bDDTgv1bDD9bDDrbDDWbDD+bDD0bDD |
| TLSH | 15D6232267FD0A18E1F36778ED3A90E19536BC65DF12D08F2654386E6871E4093A373B |
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
Structural branches: 12
STICH kept: 3secondary ignored: 9
bin
8img
1Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
3 / 3
Path
ole:doc>bin>pe:dll
Shape
ole:doc>bin>pe:dll
3 nodes
Path
ole:doc>pe:dll>pe:dll
Shape
ole:doc>pe:dll>pe:dll
3 nodes
PE Layout
UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential