Cryptam // document analysis



Sample Details

original filename: f854f057c5b7e5e9f863d94d0c81c1f8a2f1eac34dae900da52f6cadf98d923a

size: 115712 bytes
submitted: 2013-06-12 22:40:03
md5: 714876fdce62371da08c139377f23d76
sha1: 8fe6b3e47bb57a6ae2ae8908435c85e3e60b9627
sha256: f854f057c5b7e5e9f863d94d0c81c1f8a2f1eac34dae900da52f6cadf98d923a
ssdeep: 1536:WPV153V8hMhFHBztVSa5O87EawIX3eXmB2DpXXG+phRFJmy9U7N6:WP353V6MhxVtAKO873mDpnGuRGJ6
content/type: Composite Document File V2 Document, Little Endian, Os
analysis time: 70.88 s
result: malware [20]

signature hits:

39328: exploit.office ScriptBridge may load remote exploit


Yara Tags

MS13051

Strings

raw strings