Malicious
Malicious

da9d7973f1ba30d29bd02e3dff5e67c3

ZIP Archive
MD5: da9d7973f1ba30d29bd02e3dff5e67c3
Size: 487.15 KB
application/zip
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 da9d7973f1ba30d29bd02e3dff5e67c3
Sha1 ea4c2e30a245e433f43d220923fdc1ae80dcd99f
Sha256 5c1e7f1b3ddcc237ff1906337a6ae73f5ce04d6d974e96218b6fd8cd380ea160
Sha384 dea37225ad96e3e2b4279234349e44d86a3425d5294e9d2ff1aebf30b03a377a69ec52d23d7d9fcf926c103d41932bfb
Sha512 e89f58c5ececf9f3c80d566a035d7ced6a3ebe2468723c50685f66253e55bd40891f98ee456f02f2713cee000c3afcfd6d00b4b73139bb1293f416f4d957a22e
SSDeep 12288:Qr066Uv4SnAQPKTYNk/wm+iTcchv4xtHYc2OnZw:Qr066Uv4t1cNk/wjibhv4b2OnS
TLSH DEA4238274716D06D096CFBDD4C1AACAD06A023D35263BE5639294CABD940367F9BF13
Application.cmd
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.fptable
.reloc
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

Structural branches: 3 STICH kept: 2secondary ignored: 1
bin 1

Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path arc:zip>scr:vbs~T1027~T1059.005
Shape arc:zip>scr:vbs
technique2 nodes
Path arc:zip>pe:exe
Shape arc:zip>pe:exe
2 nodes
Application.cmd
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.fptable
.reloc
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙