Suspect
MS Office Document
MD5: b2660a0250ee3528c87d129a40aaa132
Size: 16.94 MB
application/vnd.ms-office
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
| MD5 | b2660a0250ee3528c87d129a40aaa132 |
| Sha1 | 0daa3e4baaa0eb093962d12d5cb6fe1da0d7e25e |
| Sha256 | 085df3b8568d9f83144e173e20a4dfcd912eeab4a82fff694d08e2c81130260a |
| Sha384 | a549eac3f866e95549fab68ef8afe3281beda136568657e74b603b070487b36e2b1963f4fd0cf9d008d0b3f891e32d50 |
| Sha512 | ccdaa24dcb188e5e5ed757524755333995fc110675ba0bbd0f90ad579740fd8066201f18644f641802df71bf269f85dfc1b96256b8aa8f7993209dc9fe5c8639 |
| SSDeep | 393216:/6ohU+8bjJ8fQq9ySZ8Ei6ohU+8bjJ8P6ohU+8bjJ886ohU+8bjJ8:yoh0bjc9ySZzNoh0bjroh0bjgoh0bj |
| TLSH | 040733211BF8C855EAB30B75FA7B86B44637BC51A912D05F03A03E1D1932E819EA3377 |
STICH
beta
Structural Threat Infection Chain Hash
A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.
Structural branches: 10
STICH kept: 2secondary ignored: 8
bin
7img
1Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.
STICH Path = the fingerprint (canonical chain with techniques)
STICH Shape = structure only
Only determinant branches produce STICH Paths.
Path
ole:doc>pe:dll>pe:dll
Shape
ole:doc>pe:dll>pe:dll
3 nodes
Path
ole:doc>pe:dll
Shape
ole:doc>pe:dll
2 nodes
PE Layout
UNKNWOWNsuspect
Memoryhuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential