Malicious Archive / .ZIP — malware analysis report

Static analysis result for SHA-256 2e4ad204e3b2096c…

MALICIOUS

Archive / .ZIP

31.41 MB
MD5: 574a253557c81144c6ee7a92ca663341 SHA-1: 64f3d6e007779bba485fe4584075cc358a7e60d4 SHA-256: 2e4ad204e3b2096cf35380f5d1e9e4f5c48c3fccb536ed3912ef16d5d7bf919c
62 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment T1190 Exploit Public-Facing Application

The archive file exceeded the scanning limit, indicating a large number of contained files. One of the archive members was identified as malicious with a high risk score. This suggests the archive is being used as a container to distribute further malicious content.

Heuristics 2

  • Archive contains malicious member critical ARCHIVE_CHILD_MALICIOUS
    At least one extracted archive member was classified as malicious. The archive is a transport wrapper for that payload.
  • Archive entry limit reached (50) info ARCHIVE_LIMIT
    Only the first 50 files were scanned.