Malicious
Malicious

49331bd1e5e5b490d6407cb777d09b96

MS Office Document
MD5: 49331bd1e5e5b490d6407cb777d09b96
Size: 587.26 KB
application/vnd.ms-office
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 49331bd1e5e5b490d6407cb777d09b96
Sha1 83ee2cdde9b0dfd854e6c2bf7f846637ebf1bd75
Sha256 7b174e4b0b2724ec48c76d8cd1470a399c245bb25ed6a829ca7552196f03d40b
Sha384 754fc0de225a52320f3039d233b62fa7dbb1bcaa019348fe314250ac01abd8ee7930d179e82cee65eaf41c86bae054e9
Sha512 d57ba5393fa1ff6446ae5dbafdc9eec583c60c1ebf1c4ab22cc7d4052cca2e423ebd74ff55c9373885b688ac8edb9bbc1f3ae9a870d08637cb87ed3676529f83
SSDeep 12288:c+z6Ka1OPp2nW7ocPblzhECs1YKCp13hAxydMiSpajY+Nhbx9lF6HkXRy:cHWAnW7dUCsW7p1exydMiSTWxxvFJy
TLSH A2C42280B2CBEE37C29E9B7279D1C1420066FC895F11E10762547BEE1A73EA101D73AE
49331bd1e5e5b490d6407cb777d09b96
Malicious
[Repaired @0x00001400]
Malicious
Root Entry
CompObj
Workbook
SummaryInformation
DocumentSummaryInformation
MBD00580101
[Content_Types].xml
_rels
.rels
xl
_rels
workbook.xml.rels
workbook.xml
sharedStrings.xml
drawings
_rels
vmlDrawing1.vml.rels
vmlDrawing1.vml
worksheets
_rels
sheet1.xml.rels
sheet1.xml
theme
theme1.xml
styles.xml
media
image1.emf
embeddings
oleObject1.bin
Root Entry
Ole
CompObj
CONTENTS
#Stream {UglyToad.PdfPig.Core.XrefLocation}
Text (Preview)
Structure
printerSettings
printerSettings1.bin
docProps
thumbnail.wmf
core.xml
app.xml
CompObj
MBD00580102
Ole
_VBA_PROJECT_CUR
PROJECT
PROJECTwm
VBA
dir
_VBA_PROJECT
Name Value
CONTENTS
1.5
CONTENTS
D:20250822092243Z
CONTENTS
D:20250822202730+07'00'
CONTENTS
Transfer Confirmation
CONTENTS
OpenPDF 2.0.5
CONTENTS
D:20250822092243Z
CONTENTS
D:20250822202730+07'00'
CONTENTS
OpenPDF 2.0.5
CONTENTS
Transfer Confirmation
URI URI
https:huhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
49331bd1e5e5b490d6407cb777d09b96
Malicious
[Repaired @0x00001400]
Malicious
Root Entry
CompObj
Workbook
SummaryInformation
DocumentSummaryInformation
MBD00580101
[Content_Types].xml
_rels
.rels
xl
_rels
workbook.xml.rels
workbook.xml
sharedStrings.xml
drawings
_rels
vmlDrawing1.vml.rels
vmlDrawing1.vml
worksheets
_rels
sheet1.xml.rels
sheet1.xml
theme
theme1.xml
styles.xml
media
image1.emf
embeddings
oleObject1.bin
Root Entry
Ole
CompObj
CONTENTS
#Stream {UglyToad.PdfPig.Core.XrefLocation}
Text (Preview)
Structure
printerSettings
printerSettings1.bin
docProps
thumbnail.wmf
core.xml
app.xml
CompObj
MBD00580102
Ole
_VBA_PROJECT_CUR
PROJECT
PROJECTwm
VBA
dir
_VBA_PROJECT
No malware configuration was found at this point.
URI URI
https:huhuhuhuhuhuhu
49331bd1e5e5b490d6407cb777d09b96 › Root Entry › MBD00580101 › Package › xl › embeddings › oleObject1.bin › Root Entry › CONTENTS
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙