Suspicious
Suspect

e833b109c08f3ee3190d264b5458dc09

ZIP Archive
MD5: e833b109c08f3ee3190d264b5458dc09
Size: 584.58 KB
application/zip

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 e833b109c08f3ee3190d264b5458dc09
Sha1 bb9dd56f63cb026e9403dec985545bc0388c6065
Sha256 5afa4a7bc2a99ba85324fc4d96258536e8a9fb6e5e108bf3d91539cb5b82a6fd
Sha384 931d0d3cb04a34eb1344f5011e69ba60a75d201b1b999c098007b90b3bff25651a269a88cb090ac8d5bf2f9b46f66ee6
Sha512 9a95db18105eeb9ddb5524d2322d9732968f0367477cb9ab854ae95342703d45d1e42b9fc2ec9a1333eaa06b584a02d281354b3192bd5b621214596c82c9f8e9
SSDeep 12288:oA7iOm6Jjghf4xSfUxZ2U18/dtQlSprSp16nQAH9NNzpWlSFyorOIic/7MPw:zm6Jj6ESfUxZ91kmY/99z8UFXicTn
TLSH ABC423692755F0C46206F3FC828CBCD886EF14F98B9315BAC90FA585F456257BB2218F
Activate.cmd
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
package.txt
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

Structural branches: 2 STICH kept: 1secondary ignored: 1
bin 1

Decorative / non-determinant leaves (styles, themes, media, fonts, icons, plain text…) are summarized here instead of producing STICH Paths.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path arc:zip>pe:exe
Shape arc:zip>pe:exe
2 nodes
Activate.cmd
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.reloc
package.txt
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙