Malicious
Malicious

db6f7a6f35ab29153e43bd8ecd6ec8aa

MS Office Document
|
MD5: db6f7a6f35ab29153e43bd8ecd6ec8aa
|
Size: 108.54 KB
|
application/vnd.ms-office

Infection Chain
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
db6f7a6f35ab29153e43bd8ecd6ec8aa
Sha1
f15bc9c3393efd8e0fc36adfe6988fcaaada00e1
Sha256
ea229a2fd634198ad3d93dcd0fe536d0daf5420a5f0cbc6e2f58937807d3628f
Sha384
d1bc7c2f689526b5b2ae86d71ccc5e198b2bc53d398e55a038dacdb089828ad7bee2861f4b013dadcf45d4c9316a446a
Sha512
46e8eced40e5f077d7c89fa64da83ad55bc768b1cf0398137de2462761c01af8ca888ea574182ad04b4f19376c55cabfdf310d13e5f56dad7f51fe0cdb3d5f60
SSDeep
768:VNhlfrk6McHREZR/CAqIDtxz99UXdZus/Uzf7VSiWr:VDlfrk6BSZIxIDt3ydl/cBS9
TLSH
7FB34A10B7958B26E682A1351CFB82D2A731BC0A7F11570F319C732E77769A02FE6749
File Structure
db6f7a6f35ab29153e43bd8ecd6ec8aa
Malicious
[Repaired @0x00017AF4]
Malicious
[Content_Types].xml
_rels
.rels
theme
theme
themeManager.xml
theme1.xml
_rels
themeManager.xml.rels
Root Entry
Malicious
Data
[Repaired @0x000018F4]
Malicious
CompObj
WordDocument
SummaryInformation
DocumentSummaryInformation
Macros
PROJECT
PROJECTwm
VBA
dir
Module1
__SRP_1
__SRP_2
__SRP_3
_VBA_PROJECT
ObjectPool
_993627310
Ole
PIC
META
CompObj
ObjInfo
OlePres000
WordDocument
SummaryInformation
MsoDataStore
ÛÞLÉÙÁUEÂÔÒÕDÅÝÅÎÌBÏÑÀ==
Item
Properties
db6f7a6f35ab29153e43bd8ecd6ec8aa (108.54 KB)
File Structure
db6f7a6f35ab29153e43bd8ecd6ec8aa
Malicious
[Repaired @0x00017AF4]
Malicious
[Content_Types].xml
_rels
.rels
theme
theme
themeManager.xml
theme1.xml
_rels
themeManager.xml.rels
Root Entry
Malicious
Data
[Repaired @0x000018F4]
Malicious
CompObj
WordDocument
SummaryInformation
DocumentSummaryInformation
Macros
PROJECT
PROJECTwm
VBA
dir
Module1
__SRP_1
__SRP_2
__SRP_3
_VBA_PROJECT
ObjectPool
_993627310
Ole
PIC
META
CompObj
ObjInfo
OlePres000
WordDocument
SummaryInformation
MsoDataStore
ÛÞLÉÙÁUEÂÔÒÕDÅÝÅÎÌBÏÑÀ==
Item
Properties
Characteristics

vbaDNA - VBA Stomping & Purging Stategy detection

Module Name
Module1
VBA Macro
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙