VTI SCORE: 100/100
Dynamic Analysis Report |
Classification: |
Spyware
Keylogger
Exploit
...
|
Threat Names: |
Exploit.RTF-ObfsStrm.Gen
Gen:Variant.Graftor.807433
VBS.Heur.Laburrak.7.Gen
...
|
tmpeml_attach_for_scan8939506995a312b8dcb233913095b87d.file.rtf
RTF Document
Created at 2020-08-04T23:24:00
Remarks (2/2)
(0x0200000E): The overall sleep time of all monitored processes was truncated from "2 hours, 8 minutes, 9 seconds" to "1 minute, 20 seconds" to reveal dormant functionality.
This is a filtered view
This list contains only the embedded files, downloaded files, and dropped files
Filters: |
There are no files for this filter
There are no files in this analysis
Filename | Category | Type | Severity | Actions |
---|
C:\Users\aETAdzjz\Desktop\tmpeml_attach_for_scan8939506995a312b8dcb233913095b87d.file.rtf | Sample File | RTF |
Malicious
|
...
|
»
Office Information
»
Controls (1)
»
CLSID | Control Name | Associated Vulnerability |
---|---|---|
{00021700-0000-0000-C000-000000000046} | Equation3 | CVE-2017-11882 |
Local AV Matches (1)
»
Threat Name | Severity |
---|---|
Exploit.RTF-ObfsStrm.Gen |
Malicious
|
C:\Users\aETAdzjz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\web.vbs | Dropped File | Text |
Malicious
|
...
|
»
Local AV Matches (1)
»
Threat Name | Severity |
---|---|
VBS.Heur.Laburrak.7.Gen |
Malicious
|
C:\Users\aETAdzjz\AppData\Roaming\appdata\sjfhjjskfsf.exe | Downloaded File | Binary |
Malicious
|
...
|
»
Local AV Matches (1)
»
Threat Name | Severity |
---|---|
Gen:Variant.Graftor.807433 |
Malicious
|
aETAdzjz_United States_A8D24E6933_08-04-2020 23.28.13/Screenshot.jpeg | Embedded File | Image |
Unknown
|
...
|
»
aETAdzjz_United States_A8D24E6933_08-04-2020 23.28.13/Log.txt | Embedded File | Text |
Unknown
|
...
|
»
C:\Users\aETAdzjz\AppData\Local\A8D24E6933\aETAdzjz_United States_A8D24E6933_08-04-2020 23.28.13.zip | Dropped File | ZIP |
Unknown
|
...
|
»
Archive Information
»
Number of Files | 2 |
Number of Folders | 1 |
Size of Packed Archive Contents | 39.98 KB |
Size of Unpacked Archive Contents | 51.51 KB |
File Format | zip |
Contents (2)
»
Filename | Packed Size | Unpacked Size | Compression | Is Encrypted | Modify Time | Actions |
---|---|---|---|---|---|---|
aETAdzjz_United States_A8D24E6933_08-04-2020 23.28.13/Screenshot.jpeg | 39.33 KB | 50.19 KB | Deflate | 2020-08-05 01:28 (UTC+2) |
...
|
|
aETAdzjz_United States_A8D24E6933_08-04-2020 23.28.13/Log.txt | 672 Bytes | 1.32 KB | Deflate | 2020-08-05 01:28 (UTC+2) |
...
|
fd41cd2f48623ceb8d6d4fa774c80efa5c3f22c94bfd7a7c59543772b585d9a1 | Downloaded File | Text |
Unknown
|
...
|
»