a14e514d...0b34 | VMRay Analyzer Report
Try VMRay Analyzer
VTI SCORE: 100/100
Dynamic Analysis Report
Classification: Dropper, Downloader

a14e514ddfc3a921c5a9e2fc9b931bc734b4927fa9d4b011ab77f9e46da50b34 (SHA256)

Order_Payroll_81154032.doc

Word Document

Created at 2019-02-06 16:40:00

Notifications (1/1)

The overall sleep time of all monitored processes was truncated from "20 seconds" to "10 seconds" to reveal dormant functionality.

Top Threat Indicators (View all 36 threat indicators)

Screenshots

Monitored Processes

Analysis Information

Creation Time 2019-02-06 17:40 (UTC+1)
Analysis Duration 00:04:07
Number of Monitored Processes 25
Execution Successful True
Reputation Enabled True
WHOIS Enabled True
YARA Enabled True
Termination Reason Timeout
Tags

Sample Information

ID #440758
MD5 5e798794638d40e80c22e539521158ca Copy to Clipboard
SHA1 7b845d0659f80ceb1ebfc85e580c716be3f5eed5 Copy to Clipboard
SHA256 a14e514ddfc3a921c5a9e2fc9b931bc734b4927fa9d4b011ab77f9e46da50b34 Copy to Clipboard
SSDeep 3072:MggRr1xBwqdXNuaIMh8bHpX2z3ZlG0s5Zc4s7qZoajik9QAF6fTLimUVSSUk6:Mg0pxvZQaITpGWzljiU6fvimU Copy to Clipboard
Filename Order_Payroll_81154032.doc
File Size 169.00 KB
File Type Word Document
Has VBA Macros True

Analyzer Information

Dynamic Analyzer Build Date 2019-01-08 16:19 (UTC+1)
Dynamic Analyzer Version 2.3.2
Static Analyzer Version 1.0.1
VTI Ruleset Version 3.1
YARA Built-in Ruleset Version 1.1
Analysis Report Layout Version 3
Function Logfile
Exit-Icon

This feature requires an online-connection to the VMRay backend.

An offline version with limited functionality is also provided.
The offline version is supported only in Mozilla Firefoxwith deactivated setting "security.fileuri.strict_origin_policy".


    
Before

This feature requires an online-connection to the VMRay backend.

An offline version with limited functionality is also provided.
The offline version is supported only in Mozilla Firefoxwith deactivated setting "security.fileuri.strict_origin_policy".


    
After

This feature requires an online-connection to the VMRay backend.

An offline version with limited functionality is also provided.
The offline version is supported only in Mozilla Firefoxwith deactivated setting "security.fileuri.strict_origin_policy".


    
Screenshot
Expand-Icon
Exit-Icon
icon_left
icon_left
image