New malicious Office docs trick
Tags
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Malicious Link - T1204.001 Malware - T1587.001 Malware - T1588.001 Python - T1059.006 Software - T1592.002 |
Common Information
Type | Value |
---|---|
UUID | d4733bcf-9d5d-42f7-ae34-6e6cb019b2fb |
Fingerprint | a64068197d9e0dff |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | May 8, 2015, 2:47 p.m. |
Added to db | Jan. 18, 2023, 8:08 p.m. |
Last updated | Nov. 17, 2024, 6:31 p.m. |
Headline | Blaze's Security Blog |
Title | New malicious Office docs trick |
Detected Hints/Tags/Attributes | 26/2/21 |
Source URLs
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 74 | adodb.stream |
|
Details | Domain | 1 | jhyygubjdfg.open |
|
Details | Domain | 1 | savepic.org |
|
Details | Domain | 1 | sdfsdfsdf.open |
|
Details | Domain | 1 | savepic.net |
|
Details | File | 1 | deobfuscate_chr.py |
|
Details | File | 46 | microsoft.xml |
|
Details | File | 1 | 7260406.jpg |
|
Details | File | 1 | 6856149.jpg |
|
Details | File | 1 | ay19358kxn.doc |
|
Details | File | 1 | ay.vb |
|
Details | File | 1 | jguigbjbff3f.vbs |
|
Details | File | 1 | o8237423.exe |
|
Details | File | 4 | dinput8.dll |
|
Details | sha1 | 1 | b2c793b1cf2cf11954492fd52e22a3b8a96dac15 |
|
Details | sha1 | 1 | 79b0d7a7fe917583bc4f73ce1dbffc5497b6974d |
|
Details | sha1 | 1 | c8a914fdc18d43aabbf84732b97676bd17dc0f54 |
|
Details | sha1 | 1 | 7edc7afb424e6f8fc5fb5bae3681195800ca8330 |
|
Details | sha1 | 1 | 8bfe59646bdf6591fa8213b30720553d78357a99 |
|
Details | Url | 1 | http://savepic.org/7260406.jpg |
|
Details | Url | 1 | http://savepic.net/6856149.jpg |