SUSPICIOUS — f0871b89ff1a937ad9ebc3aa0da9b4a72e3ea8004a34d06bd88b2d90e7c19f20

SUSPICIOUS — f0871b89ff1a937ad9ebc3aa0da9b4a72e3ea8004a34d06bd88b2d90e7c19f20 is a office-ooxml sample analyzed by MalwareAnalyzer by Cyble with a suspicious verdict (57/100). 2 of 54 detection engines flagged it, exhibiting 1 ATT&CK technique.

Identification

Detections (2 of 54 engines)

MITRE ATT&CK

Why this verdict

The suspicious score of 57/100 is the fusion of 3 weighted signals:

Dynamic analysis (windows)

1263 behavior events · 0 ATT&CK techniques · 21 dropped files.

Runtime network

Dropped files

Embedded URLs

Embedded IP addresses

Latest analyzed threats · ATT&CK coverage

Analyzed on MalwareAnalyzer by Cyble · Open interactive report