General
Structural Analysis
Config.0
Yara Rules99+
Sync
Community
Infection Chain
Summary by MalvaGPT
Characteristics
|
Hash | Hash Value |
|---|---|
| MD5 | a2ac78fdd356856f7806d26761b6adfb
|
| Sha1 | f192cb35683087a65b5a1092204d634292fef95a
|
| Sha256 | f53b3ab9c9927c3e813e7c1f730c39cb4c728bbe35fd5d2fc522c8dbf17ae077
|
| Sha384 | 82e3a3c433e611a199065fea17d7aee224a4c3dde8cfd2ba730c626a71c49c761977b2ea021e4d2782863da7ecc6711d
|
| Sha512 | 337142e241d40fed295c7d4e62c83c4b10594f374f61e4a2a2e2f8e29ee6033b2ef8c4d07408c6b313ad9533437d75d7e874d635b9b6f80a7e1bd76993c4823d
|
| SSDeep | 12288:7HXnvQY1BhQc7rLIshXKoek4e1Z/////////X////////pFuJWsQnj:j3FBhQcLhhXK+/////////X////////V
|
| TLSH | 04C4CFD39A3B92BAC05D60B5A3A44344E017B4BCE324376F11C769B124A4F7F2B6753A
|
File Structure
[Content_Types].xml
_rels
.rels
xl
_rels
workbook.xml.rels
workbook.xml
worksheets
sheet4.xml
_rels
sheet2.xml
sheet3.xml
sheet1.xml
sheet11.xml
sheet10.xml
sheet9.xml
sheet5.xml
sheet6.xml
sheet7.xml
sheet8.xml
vbaProject.bin
Root Entry
PROJECT
PROJECTwm
VBA
dir
Sheet1
Module1
Sheet10
__SRP_0
__SRP_1
__SRP_2
__SRP_3
_VBA_PROJECT
drawings
theme
theme1.xml
styles.xml
sharedStrings.xml
media
image1.png
image1.png-preview.png
calcChain.xml
a2ac78fdd356856f7806d26761b6adfb (567.19 KB)
File Structure
[Content_Types].xml
_rels
.rels
xl
_rels
workbook.xml.rels
workbook.xml
worksheets
sheet4.xml
_rels
sheet2.xml
sheet3.xml
sheet1.xml
sheet11.xml
sheet10.xml
sheet9.xml
sheet5.xml
sheet6.xml
sheet7.xml
sheet8.xml
vbaProject.bin
Root Entry
PROJECT
PROJECTwm
VBA
dir
Sheet1
Module1
Sheet10
__SRP_0
__SRP_1
__SRP_2
__SRP_3
_VBA_PROJECT
drawings
theme
theme1.xml
styles.xml
sharedStrings.xml
media
image1.png
image1.png-preview.png
calcChain.xml
Characteristics
vbaDNA - VBA Stomping & Purging Stategy detection
|
Module Name0 | ||
|---|---|---|
| Sheet1 | VBA Macro |
|
| Module1 | VBA Macro |
|
| Sheet10 | VBA Macro |
|
No malware configuration were found at this point.
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.