Cryptam // document analysis


Sample Details

original filename: 4c10918202e6069d8da446105f2246466b533a0190188bbdc47459c3a48d7e9e_e.doc

size: 602112 bytes
submitted: 2019-02-04 20:34:29
md5: 0ec819baac3860c8cffea84812e42636
sha1: 62903aa996319ac72508be7ff8d7ddec324c407b
sha256: 4c10918202e6069d8da446105f2246466b533a0190188bbdc47459c3a48d7e9e
ssdeep: 12288:IEensQGefg21xGWDQ63EdegWlWY1WN3OgVo+9Af6xleUBa2Bgqe+53iYcAz2X0Bk:IEheY21AgQeGFa9dwtQ3kvE
content/type: Composite Document File V2 Document, Little Endian, Os
analysis time: 3.14 s
result: suspicious
embedded executable: found

signature hits:

24654: string.This program cannot be run in DOS mode
dropped.file exe 2f18306b545ed5ccc07f1627d452229a / 577536 bytes / @ 24576


Strings

raw strings
decrypted raw strings

Dropped Files

exe at 24576
md5: 2f18306b545ed5ccc07f1627d452229a
sha1: 4a296e640153b231d4ab8ffd4e6d4f04098e71b3
sha256: 62aec7de006e701b8af4c5bacbd9c11d700a540c039c2f46ed2767fd1d9c8da9
view strings