Not Just OneNote, Also Microsoft Publisher Maldocs can Deliver Malware | OSArmor Blog
Tags
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Malware - T1587.001 Malware - T1588.001 Mshta - T1218.005 Phishing - T1660 Phishing - T1566 Tool - T1588.002 Mshta - T1170 |
Common Information
Type | Value |
---|---|
UUID | 37bd4ee5-b553-4194-b4d7-2277ef96459b |
Fingerprint | b2121c0075cc87a3 |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | Feb. 2, 2023, 1:18 p.m. |
Added to db | June 5, 2023, 10:21 a.m. |
Last updated | Nov. 17, 2024, 6:55 p.m. |
Headline | Not Just OneNote, Also Microsoft Publisher Maldocs can Deliver Malware |
Title | Not Just OneNote, Also Microsoft Publisher Maldocs can Deliver Malware | OSArmor Blog |
Detected Hints/Tags/Attributes | 20/2/15 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 44 | ✔ | — | https://blog.osarmor.com/feed | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 1 | details.pub |
|
Details | File | 1 | c:\program files\microsoft office\office16\mspub.exe |
|
Details | File | 99 | c:\windows\explorer.exe |
|
Details | File | 1 | c:\users\dev\desktop\invoice details.pub |
|
Details | File | 1 | c:\program files\microsoft office\office16\excel.exe |
|
Details | File | 409 | c:\windows\system32\cmd.exe |
|
Details | File | 1 | c:\users\public\notepad.bat |
|
Details | File | 36 | c:\windows\system32\mshta.exe |
|
Details | File | 102 | mspub.exe |
|
Details | File | 14 | lmiguardiansvc.exe |
|
Details | File | 81 | werfault.exe |
|
Details | md5 | 1 | 3C0827DA4353B81E0B9F3D724EC9EDEF |
|
Details | md5 | 1 | EA7FE880FF92EEE3D07648B1206FB552 |
|
Details | md5 | 1 | 8A2122E8162DBEF04694B9C3E0B6CDEE |
|
Details | md5 | 1 | 0B4340ED812DC82CE636C00FA5C9BEF2 |