MALICIOUS — fa4923e264cd9405eff297f98639fa44e339985f419697d9f7533bf2e1218d11
MALICIOUS — fa4923e264cd9405eff297f98639fa44e339985f419697d9f7533bf2e1218d11 is a unknown sample analyzed by MalwareAnalyzer by Cyble with a malicious verdict (89/100). 2 of 53 detection engines flagged it.
Identification
- SHA-256:
fa4923e264cd9405eff297f98639fa44e339985f419697d9f7533bf2e1218d11 - SHA-1:
c9dec25acdd416fb297d8fe0f302f3dc812e1449 - MD5:
0d064d7585eb3f2c212d1cef5121dbf7 - ssdeep:
24:tdtrda6ffa8d7b6flY6d7a6flYcd7V6flYIzd7o26flY/d7Q6flY6JPd7k6flYV2:zpd1nvdX6NY6dG6NYcdh6NYQdN6NY/d3 - TLSH:
T11A123D5BA854A50D096B41F5BB54C25F603C8BE112F9F5BC01F0BDB498BA4A12CA2BD8 - Submitted as: fa4923e264cd9405eff297f98639fa44e339985f419697d9f7533bf2e1218d11
- File type: unknown · Size: 1094 bytes
- Verdict: malicious (89/100)
Detections (2 of 53 engines)
- ClamAV (daily): Doc.Exploit.CVE_2021_40444-9891528-0
- Microsoft Defender: Exploit:O97M/CVE-2021-40444.SS!MTB
Why this verdict
The malicious score of 89/100 is the fusion of 2 weighted signals:
- ClamAV (daily) flagged Doc.Exploit.CVE_2021_40444-9891528-0 (rule
Doc.Exploit.CVE_2021_40444-9891528-0) - engine signal, weight 0.90, confidence 0.95 - Embedded network infrastructure: https://fidlasdwdsa.online/sad3e21reas.html!x-usc:https://fidlasdwdsa.online/sad3e21reas.html - static signal, weight 0.35, confidence 0.60
Embedded URLs
- http://schemas.openxmlformats.org/package/2006/relationships
- http://schemas.openxmlformats.org/officeDocument/2006/relationships/webSettings
- http://schemas.openxmlformats.org/officeDocument/2006/relationships/settings
- http://schemas.openxmlformats.org/officeDocument/2006/relationships/styles
- http://schemas.openxmlformats.org/officeDocument/2006/relationships/theme
- http://schemas.openxmlformats.org/officeDocument/2006/relationships/fontTable
- http://schemas.openxmlformats.org/officeDocument/2006/relationships/oleObject
- https://fidlasdwdsa.online/sad3e21reas.html!x-usc:https://fidlasdwdsa.online/sad3e21reas.html
Embedded domains
- schemas.openxmlformats.org
- fidlasdwdsa.online
Latest analyzed threats · ATT&CK coverage
Analyzed on MalwareAnalyzer by Cyble · Open interactive report