Malicious
Malicious

aaa43e8267afc8d8533463c77c109f12

MS Excel Document
|
MD5: aaa43e8267afc8d8533463c77c109f12
|
Size: 448.2 KB
|
application/vnd.ms-excel

Infection Chain
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
aaa43e8267afc8d8533463c77c109f12
Sha1
02fa755fe38484cd9a219e87eae925be7fa35b46
Sha256
9ddd6cf08cc248e84fab497f9f508c3a4277f7d8d500f8bf7d18d19fd1fd2faf
Sha384
09b7ffa440106ff97cc5bc253136afdc39f788b09e3f046530a9f26f8ac462fb2fe199c07e819a2f6ac11d9fd76efa18
Sha512
73e7ca5c76b6b53ce14dcfb60f662e5e0cbc54cc531fbf8e4736ec2dc6a4c68652baa61306c40a70b76fdc844b93c4cf19022cc7b5ee892d26247d757c491eef
SSDeep
12288:KQzb7hqh7iqRnikyaWyycDQ1QGWxx6sR+vumyDN/:Vb7AEqRnLW3cMH+R+vumy/
TLSH
009423FA13E6B7DFE95F0C3CF4381EDCC8A972B46015300862974DE5680BA953E86693
File Structure
[Content_Types].xml
_rels
.rels
xl
workbook.xml
_rels
workbook.xml.rels
worksheets
sheet1.xml
_rels
sheet1.xml.rels
theme
theme1.xml
styles.xml
sharedStrings.xml
drawings
drawing1.xml
vmlDrawing1.vml
_rels
vmlDrawing1.vml.rels
embeddings
oleObject1.bin
Root Entry
Ole10Native
media
image1.emf
vbaProject.bin
Root Entry
PROJECT
PROJECTwm
VBA
dir
Module2
__SRP_0
__SRP_1
__SRP_2
__SRP_3
__SRP_4
__SRP_5
_VBA_PROJECT
printerSettings
printerSettings1.bin
docProps
core.xml
app.xml
aaa43e8267afc8d8533463c77c109f12 (448.2 KB)
File Structure
[Content_Types].xml
_rels
.rels
xl
workbook.xml
_rels
workbook.xml.rels
worksheets
sheet1.xml
_rels
sheet1.xml.rels
theme
theme1.xml
styles.xml
sharedStrings.xml
drawings
drawing1.xml
vmlDrawing1.vml
_rels
vmlDrawing1.vml.rels
embeddings
oleObject1.bin
Root Entry
Ole10Native
media
image1.emf
vbaProject.bin
Root Entry
PROJECT
PROJECTwm
VBA
dir
Module2
__SRP_0
__SRP_1
__SRP_2
__SRP_3
__SRP_4
__SRP_5
_VBA_PROJECT
printerSettings
printerSettings1.bin
docProps
core.xml
app.xml
Characteristics

vbaDNA - VBA Stomping & Purging Stategy detection

Module Name
Module1
Blacklist VBA
VBA Macro
Module2
VBA Macro
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙