Report - 동아시아연구원 사례비 지급 서식.docx

VBA_macro Word 2007 file format(docx)
ScreenShot
Created 2022.12.19 09:27 Machine s1_win7_x6402
Filename 동아시아연구원 사례비 지급 서식.docx
Type Microsoft Word 2007+
AI Score Not founds Behavior Score
1.8
ZERO API file : clean
VT API (file) 31 detected (malicious, high confidence, score, EmoooDldr, SAgent, ABRisk, WPRO, Kimsuky, 0NA103LG22, Ole2, druvzi, MacroS, PBMD, modification of W97M, Sadoca, Leonem, Detected, ai score=88, Static AI, Malicious OPENXML)
md5 bf41074e39bb3abbe4e4640401e7e655
sha256 b9dcf7fe7e8ba30d363a19c2c43fc3eea93d281b10f6ee89cffe2a3e533af442
ssdeep 6144:NxxVWZUEadK7X19HuM1JT5OQRMWAWTHuM1JT5OQRMWAWZgiDp:Nx7WZURKxMMOy6MOyWiDp
imphash
impfuzzy
  Network IP location

Signature (3cnts)

Level Description
danger File has been identified by 31 AntiVirus engines on VirusTotal as malicious
notice Creates (office) documents on the filesystem
notice Creates hidden or system file

Rules (2cnts)

Level Name Description Collection
warning Contains_VBA_macro_code Detect a MS Office document with embedded VBA macro code [binaries] binaries (upload)
info docx Word 2007 file format detection binaries (upload)

Network (0cnts) ?

Request CC ASN Co IP4 Rule ? ZERO ?

Suricata ids



Similarity measure (PE file only) - Checking for service failure