Malicious Archive / .ZIP — malware analysis report

Static analysis result for SHA-256 1caab23e7a4a759f…

MALICIOUS

Archive / .ZIP

23.70 MB
MD5: 707428bf8713fde6a4951178375ce356 SHA-1: 909155ea5852c247bde10eb3750a5271387e6a99 SHA-256: 1caab23e7a4a759f8bd3ea5ee15ef9665d496f33c9bd996219e683a2af3fb465
62 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The archive file exceeded its entry limit, indicating a large number of contained files. One of these contained files was identified as malicious with a high risk score. This suggests the archive is being used as a container to deliver malicious content, likely through a social engineering lure such as a phishing email.

Heuristics 2

  • Archive contains malicious member critical ARCHIVE_CHILD_MALICIOUS
    At least one extracted archive member was classified as malicious. The archive is a transport wrapper for that payload.
  • Archive entry limit reached (50) info ARCHIVE_LIMIT
    Only the first 50 files were scanned.