MALICIOUS — 952e6e98ea414e37d8e38d21a23cf24c1280f555271e49746f31ee73f3154ac5
Verdict: malicious (99/100) · Family: Phishing
File type: pdf · SHA-256: 952e6e98ea414e37d8e38d21a23cf24c1280f555271e49746f31ee73f3154ac5
MITRE ATT&CK
- T1112
- T1105
YARA
Dynamic analysis (windows)
9468 behavior events · 1 ATT&CK techniques · 4 dropped files.
Runtime network
- www.msftconnecttest.com
- searchapp.bundleassets.example
- ntp.ubuntu.com
- _dosvc._tcp.local
- desktop-hsgcbep._dosvc._tcp.local
- 192.168.122.112
- 224.0.0.252
- 192.168.122.255
- 192.168.122.1
- 203.26.79.13
- 224.0.0.251
- 10.240.0.1
- ff02::fb
- ff02::2
- ff02::16
- 185.125.190.56
- ff02::1:ff12:3456
- 255.255.255.255
Analyzed on MalwareAnalyzer by Cyble · Open interactive report