Análise Manual de Documentos Maliciosos — Easy Mode
Common Information
Type Value
UUID ec686825-56cd-4c6c-9f4d-f65566a7df0c
Fingerprint 855e4ac0f66f6576
Analysis status DONE
Considered CTI value 0
Text language
Published Dec. 20, 2023, 12:35 p.m.
Added to db Aug. 31, 2024, 7:09 a.m.
Last updated Nov. 17, 2024, 6:54 p.m.
Headline Análise Manual de Documentos Maliciosos — Easy Mode
Title Análise Manual de Documentos Maliciosos — Easy Mode
Detected Hints/Tags/Attributes 37/2/32
RSS Feed
Details Id Enabled Feed title Url Added to db
Details 169 Maldoc on Medium https://medium.com/feed/tag/maldoc 2024-08-30 22:08
Attributes
Details Type #Events CTI Value
Details Domain 281
docs.microsoft.com
Details Domain 604
www.trendmicro.com
Details Domain 1
busemedgan.com
Details Domain 1
vorimusesa.com
Details Domain 1
b5eaf7c5542b04e7d507b311e49b99da8.open
Details Domain 74
adodb.stream
Details Domain 1
b19c7adb6f79028f1c751ec511e1d0ad7.open
Details Domain 1
elitefireandsafety.com
Details File 1
info_10_10.doc
Details File 1
c:\users\adalberto\desktop\info_10_10.doc
Details File 1
bepdnvngqt.js
Details File 6
404.html
Details File 1
cephs.php
Details File 1
cecolf.php
Details File 1
irref3.tar
Details File 7
'msxml2.xml
Details File 1
c:\\programdata\\204' + bd6dad6df257712b9fec0d9677f32fc3e + '.exe
Details File 1
c:\\programdata\\204' + random_name_2stage + '.exe
Details File 1
20467.exe
Details File 376
wscript.exe
Details File 1
docus_39386.doc
Details File 76
download.html
Details File 459
regsvr32.exe
Details File 10
regsrv32.exe
Details File 142
wmiprvse.exe
Details sha256 1
89cb1d2ee744abee8da709832ec364637601996bb494f1932837d92727d0a4d8
Details Url 1
https://docs.microsoft.com/en-us/aspnet/index/404
Details Url 1
https://docs.microsoft.com/en-us/office/index/404
Details Url 1
https://www.trendmicro.com/de_de/404.html
Details Url 1
http://busemedgan.com/cephs.php
Details Url 1
http://vorimusesa.com/angosz/cecolf.php?l=irref3.tar
Details Url 1
http://elitefireandsafety.com/download.html