Suspicious
Suspect

d392618727421ba181495e82dcd6e2ea

Share on LinkedIn
Print
ZIP Archive
MD5: d392618727421ba181495e82dcd6e2ea
Size: 491.96 KB
application/zip

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 d392618727421ba181495e82dcd6e2ea
Sha1 a43f69a113f4385e56085a4919cd16afa6d999cb
Sha256 2b09b7f0fc24f694f8f1d9f6d171791cbc172c1147d3adadcf2a61b90205bbdf
Sha384 52f4c32b8af8909a7189265ad06015198e9181b015edf73475e92ddc2557c4e233bdead066332c5a0b2d364fb916c029
Sha512 2e6836b815d8e416866bfff2c012213e60cd15e6df1fea8fc00815a93fba90daf1f57af4f73198754f8b1159be13156e8ae527fbbfbe1c7c3bab69adaeb04a25
SSDeep 12288:B1TGoqqMj4uEU5c1RIfMiZ5d6nfLGsjukmtrYFg:B1TGoOjrcEfMiZG4tcFg
TLSH F6A423A35293A2D7ABA19F74E40D93D1E2CFCB0D3D9AD2F423B6F904F6651C9444841B
bcjit.ico
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

Structural branches: 3 STICH kept: 2secondary ignored: 1
bin 1

Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path arc:zip>pe:dll
Shape arc:zip>pe:dll
2 nodes
Path arc:zip>pe:exe
Shape arc:zip>pe:exe
2 nodes
An error has occurred. This application may no longer respond until reloaded. Reload 🗙