Continuously Changing Malicious Word Macro Being Distributed - Trend of TA551 (2) - ASEC BLOG
Common Information
Type Value
UUID 7d646477-b51a-4c79-bc08-20218c3c7996
Fingerprint b757b87f4de582a4
Analysis status DONE
Considered CTI value 2
Text language
Published Sept. 29, 2021, 1 p.m.
Added to db Sept. 11, 2022, 4:59 p.m.
Last updated Nov. 4, 2024, 2:20 a.m.
Headline Continuously Changing Malicious Word Macro Being Distributed – Trend of TA551 (2)
Title Continuously Changing Malicious Word Macro Being Distributed - Trend of TA551 (2) - ASEC BLOG
Detected Hints/Tags/Attributes 40/2/16
Source URLs
Attributes
Details Type #Events CTI Value
Details Domain 1
devdrivedoc.open
Details Domain 74
adodb.stream
Details Domain 1
docexdir.open
Details Domain 2
beltmorgand.com
Details Domain 1
entiredelivery2014b.com
Details Domain 1
povertymanagement2018b.com
Details File 2
devdivex.jpg
Details File 7
'msxml2.xml
Details File 1
c:\\users\\public\\devdivex.jpg
Details md5 1
409491f78930a4f26581ebd9a6ecaa2e
Details md5 1
bc8073f5646ad6a1bc1be76e556250eb
Details md5 1
7ccb728af8c2ce3b5202ce94eaffc770
Details Url 1
http://brookscargos.com/bmdff/kemjhph/npksorqonwzusnmvgs2nl0dvmefqpvsyq/qecxpcu6vz7epqjgbj/yixysdbvkh6k5ihcto9by3jj2n/idintakemokmxulwdjn3gnitjudm6i3oqllqgqoiz/1tvjgdics/iix9am3zw9hq6rw3/73053/galax9?q=ruid5tt5bdbkclpztesr&ref=pt3zxkaeb8&id=pccea
Details Url 1
http://beltmorgand.com
Details Url 1
http://entiredelivery2014b.com
Details Url 1
http://povertymanagement2018b.com