Suspicious
Suspect

b71c7eeb9d82a0280f348a047234f7e2

Share on LinkedIn
Print
ZIP Archive
MD5: b71c7eeb9d82a0280f348a047234f7e2
Size: 493.75 KB
application/zip

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 b71c7eeb9d82a0280f348a047234f7e2
Sha1 e993847a68822b6d320060b8bf14181efb0c755d
Sha256 0f054d7c6e4efccb491f085dfc3ed49f38d45f1b8f42bcd0f3980b820e6f1a34
Sha384 987f11f3e483b1d72e226048cc175ae528710c9f7a0893522e20578142ba01e8185471ea73a35dc08f8d9b01baea6fb8
Sha512 66e2d4d8e340dd6008e2cff7f06976616c93e0f6d1300e6bf7defb8673d323d068257d1e1f42dd761884cbfe63ac13fd40f9fd5c6b3b476a2a94a6443a5ad481
SSDeep 12288:Ekmht7Drvdyi4CCH1oHF9nJ/qjuybgoJrrzTPwke:EkmHzMtH1ELnKbgoJnny
TLSH 2AB423F193429E0B23A4DAB457A3DB3375CE7292769D9301CA06CA9F4C7072896DC16F
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
StartApp.bat
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

Structural branches: 3 STICH kept: 2secondary ignored: 1
bin 1

Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path arc:zip>pe:dll
Shape arc:zip>pe:dll
2 nodes
Path arc:zip>pe:exe
Shape arc:zip>pe:exe
2 nodes
An error has occurred. This application may no longer respond until reloaded. Reload 🗙