VTI SCORE: 100/100
Dynamic Analysis Report |
Classification: Dropper, Downloader |
a14e514ddfc3a921c5a9e2fc9b931bc734b4927fa9d4b011ab77f9e46da50b34 (SHA256)
Order_Payroll_81154032.doc
Word Document
Created at 2019-02-06 16:40:00
Notifications (1/1)
The overall sleep time of all monitored processes was truncated from "20 seconds" to "10 seconds" to reveal dormant functionality.
Indicators
File (45)
»
Registry (88)
»
Mutex (2)
»
Mutex Name | Operations |
---|---|
Global\.net clr networking | Access, Delete |
Global\E0B7509842610 | Access |
URL (1)
»
URL | Operations | Sources |
---|---|---|
HTTPS://185.222.202.79/sat36/YKYD69Q_W617601.2E664EE04488A02C628E0E6CA864C24A/5/spk/ | GET | Function Log |
IP (2)
»
IP | Protocols | Sources |
---|---|---|
64.44.51.87 | TCP | Function Log |
185.222.202.79 | HTTPS, TCP | Function Log, PCAP |