Malicious Archive / .ZIP — malware analysis report

Static analysis result for SHA-256 be7abbad517250aa…

MALICIOUS

Archive / .ZIP

10.27 MB
MD5: 82f5135cfb29bc06aaf2f3bb3c8b4d73 SHA-1: 7eacc8eea1c57a1eb3aa987dd5a146ac3fddc9d6 SHA-256: be7abbad517250aae1603fb1324fcfa13c8de1dafafb15b8b640d8823e979241
62 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The archive file exceeded the entry limit during static analysis, indicating a large number of contained files. One of the archive members was identified as malicious, suggesting this ZIP file is a container for distributing malware. The exact nature of the contained malware cannot be determined from the provided evidence.

Heuristics 2

  • Archive contains malicious member critical ARCHIVE_CHILD_MALICIOUS
    At least one extracted archive member was classified as malicious. The archive is a transport wrapper for that payload.
  • Archive entry limit reached (50) info ARCHIVE_LIMIT
    Only the first 50 files were scanned.