Analysis results
Feature | Result |
---|---|
Verdict | Malicious |
SHA-256 | 24c7551200e919fc0bdce151aef784c0c324c81a337a8bf70e67cfebf1abae0d |
MD5 | af5701e6c5f9bd86f09a46875323fbfc |
File size | 176364 bytes |
MIME | application/msword |
File info | Composite Document File V2 Document, Little Endian, Os: Windows, Version 6.2, Code page: 1252, Title: Rerum., Author: Alexandre Fournier, Template: Normal.dotm, Revision Number: 1, Name of Creating Application: Microsoft Office Word, Create Time/Date: Thu Sep 17 11:17:00 2020, Last Saved Time/Date: Thu Sep 17 11:17:00 2020, Number of Pages: 1, Number of Words: 3, Number of Characters: 20, Security: 0 |
Matching maldoc templates | Emotet |
Suspicious findings in the VBA | Create showwindow Base64 Strings CreateObject Hex Strings Chr AutoExec |
Malicious methods | |
URLs | |
First reported | 16/04/2021 13:18:50 |
Scanning time | 3.32 sec |
Consult others | Triage VirusTotal Hybrid Analysis |