Cryptam // document analysis


Sample Details

original filename: Avanade Jira Excel Integration Sprint 41- v15.xlsm

size: 5628028 bytes
submitted: 2017-07-12 19:23:02
md5: 694e6af86ea7b1d17f0f045cd879424f
sha1: 22ba0601157314d70028541ab579dcbdbb9eab58
sha256: 5e4cb0f63b4ab9bdd0123f7170663eb60f9877de431fb40a9bf5be3445a1a2dc
ssdeep: 98304:qnNqEVtkeTSE9ar1JHNsfqxIukWcKIW7H61SZi6M+SazXFJIGwBqO:etkwSwo1t4q/kzWI86aYR
content/type: Microsoft Excel 2007+
analysis time: 0.00 s
result: malware [12]
embedded file objects: yes
embedded executable: found

signature hits:

embedded.file vbaProject.bin 4cefa03b7022fd4e179d92d0cce4098b
vbaProject.bin.799002: suspicious.office Visual Basic macro
vbaProject.bin.822182: string.shell32.dll


Strings

raw strings

Dropped Files

vbaProject.bin at zip
md5: 4cefa03b7022fd4e179d92d0cce4098b
sha1: a0e4e88b48e2b83ed8c19e8eb7843cd857aa5b25
sha256: 1fd48d2979494d2b434fff3fcbbaa0569b923b65c5d4f8bbb71798e5f7c15db3
view strings