Suspicious
Suspect

52e5cf0d837934cdf7c7995b36c629a7

ZIP Archive
MD5: 52e5cf0d837934cdf7c7995b36c629a7
Size: 587.69 KB
application/zip

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 52e5cf0d837934cdf7c7995b36c629a7
Sha1 f11bbf6c7fcaee3a4c59927ca091fc045b251ff8
Sha256 d714eef16e7caba3eb25efbfb2cd1790a93fc3c4a925cd7bc419566ee90c49fe
Sha384 99f1cb68dfa0c5734a145835ec744305933b391a03931a3f8fef1329176cd27b4a0e0dd0c62e7c5a03d296dc56f77edf
Sha512 fdc3f57181f9c0ebcfc06a1ff9ebea49d29186dde7e47de4b8d2f12d9dd11f9cae33cf8d8767562018a4c3ec4e9df2abad2eec8ab70f04f9adc8fb9908664e11
SSDeep 12288:L+A7qlRP8eHTCW+TNYOONPTi1wCgU3EOsT9vL2byeH9I1P0QKw6FEw:L+QqldA/TSO713u7xneH9IaQKHd
TLSH F8C4238BA3FD845390BF1F58AA5BB48D091976F34732DC93146A3213D9CB323B752698
Launcher.cmd
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

Structural branches: 2 STICH kept: 1secondary ignored: 1
bin 1

Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path arc:zip>pe:exe
Shape arc:zip>pe:exe
2 nodes
Launcher.cmd
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙