Suspicious
Suspect

844088382e0c6dfe8fe590e1e2bf9557

MS Excel Document
MD5: 844088382e0c6dfe8fe590e1e2bf9557
Size: 662.85 KB
application/vnd.ms-excel

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 844088382e0c6dfe8fe590e1e2bf9557
Sha1 3ffb8f4605f3c32e0b0734e257f3b4159160cdcd
Sha256 61c242fbc067620f54ca8596e10d09e3b433dc714f82fe6fc45653d2ca7abd5a
Sha384 30b9462b09a78b48738bef59583bf8a38fd7ef29e7bf024684df8101cfa59d7fd5489b844f9d302d414a8fc7d21a1035
Sha512 c97422a40dd36ec9967547a03909f68bb05d98bb8108990f27dcddb4089970ffc431046b3926460c548987c19af5530dbf8e1679d4d070c10250fae06d9ef84e
SSDeep 12288:eMczXTc7xD7SMpY/I56smpECXVAkieNgF8uG1ZSgEfaZ2/wMyMGtpyWcCDIy:eMczD2yMpYE6nEdLHIZSgE6HxMGTTcqN
TLSH EFE42327C453340D91D0246120F25E46F6BC3B47679B9C72FA89E17DF0E67826FB26A2
844088382e0c6dfe8fe590e1e2bf9557
[Content_Types].xml
_rels
.rels
xl
_rels
workbook.xml.rels
workbook.xml
styles.xml
theme
theme1.xml
worksheets
sheet1.xml
_rels
sheet1.xml.rels
drawings
vmlDrawing1.vml
embeddings
LXyaCS18b.tGHDBxo
Root Entry
OLe10nATivE
vrrvHPbmkHVn
docProps
core.xml
app.xml
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

Structural branches: 7 STICH kept: 1secondary ignored: 6
bin 2oox:metadata 1oox:style 1oox:theme 1xml 1

Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path oox:xlsx>oox:media>ole:doc
Shape oox:xlsx>oox:media>ole:doc
3 nodes
844088382e0c6dfe8fe590e1e2bf9557
[Content_Types].xml
_rels
.rels
xl
_rels
workbook.xml.rels
workbook.xml
styles.xml
theme
theme1.xml
worksheets
sheet1.xml
_rels
sheet1.xml.rels
drawings
vmlDrawing1.vml
embeddings
LXyaCS18b.tGHDBxo
Root Entry
OLe10nATivE
vrrvHPbmkHVn
docProps
core.xml
app.xml
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙