× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 11a6422ab6da62d7aad4f39bed0580db9409f9606e4fa80890a76c7eabfb1c13
File name: 11a6422ab6da62d7aad4f39bed0580db9409f9606e4fa80890a76c7eabfb1c13_...
Detection ratio: 30 / 61
Analysis date: 2018-01-03 17:43:34 UTC ( 2 weeks ago )
Antivirus Result Update
AegisLab Troj.Downloader.Dde!c 20180103
ALYac Trojan.Downloader.DDE.Agent 20180103
Antiy-AVL Trojan[Exploit]/Office.DDE.gen 20180103
Arcabit Trojan.Downloader.DDE.Gen.1 20180103
Avira (no cloud) HEUR/Downloader.DDE 20180103
Baidu Win32.Exploit.DDEAuto.d 20180103
BitDefender Trojan.Downloader.DDE.Gen.1 20180103
Cyren XML/DDEDownldr.A!Camelot 20180103
Emsisoft Trojan.Downloader.DDE.Gen.1 (B) 20180103
ESET-NOD32 VBA/DDE.A 20180103
F-Secure Trojan.Downloader.DDE.Gen.1 20180103
Fortinet MSWord/DDE.E!exploit 20180103
GData Trojan.Downloader.DDE.Gen.1 20180103
K7AntiVirus Trojan ( 0051a7611 ) 20180103
K7GW Trojan ( 0051a7611 ) 20180103
Kaspersky HEUR:Trojan-Downloader.MSOffice.DdeExec.gen 20180103
MAX malware (ai score=99) 20180103
McAfee W97M/MacroLess.a 20180102
McAfee-GW-Edition W97M/MacroLess.a 20180103
Microsoft Exploit:O97M/DDEDownloader.B 20180103
NANO-Antivirus Exploit.Xml.DDEAuto.euqmxe 20180103
Qihoo-360 virus.office.ddeauto 20180103
Rising Exploit.MS-Office.DDE!1.ADFB (CLASSIC) 20180103
Sophos AV Troj/DocDl-KVJ 20180103
Symantec W97M.Downloader 20180103
Tencent Office.Trojan-downloader.Ddeexec.Wsac 20180103
TrendMicro-HouseCall Suspicious_GEN.F47V1012 20180103
ViRobot DOC.Z.Agent.131072.IW 20180103
ZoneAlarm by Check Point HEUR:Trojan-Downloader.MSOffice.DdeExec.gen 20180103
Zoner Probably DDEExploit 20180103
Ad-Aware 20171225
AhnLab-V3 20180103
Alibaba 20180103
Avast 20180103
Avast-Mobile 20180103
AVG 20180103
AVware 20180103
Bkav 20180103
CAT-QuickHeal 20180103
ClamAV 20180103
CMC 20180103
Comodo 20180103
CrowdStrike Falcon (ML) 20171016
Cybereason 20171103
Cylance 20180103
DrWeb 20180103
eGambit 20180103
Endgame 20171130
F-Prot 20180103
Ikarus 20180103
Sophos ML 20170914
Jiangmin 20180103
Kingsoft 20180103
Malwarebytes 20180103
eScan 20180103
nProtect 20180103
Palo Alto Networks (Known Signatures) 20180103
Panda 20180103
SentinelOne (Static ML) 20171224
SUPERAntiSpyware 20180103
TheHacker 20180103
TotalDefense 20180103
TrendMicro 20180103
Trustlook 20180103
VBA32 20180103
VIPRE 20180103
Webroot 20180103
WhiteArmor 20171226
Yandex 20171229
Zillya 20180103
Compressed bundles
File identification
MD5 d78ae3b9650328524c3150bef2224460
SHA1 9cbc4333230c73578e469ed21b9c54674404b1a4
SHA256 11a6422ab6da62d7aad4f39bed0580db9409f9606e4fa80890a76c7eabfb1c13
ssdeep
384:JfKXYyR+UxMVgCzeJ70t7Sx58XnrGwas:WBkU+KJ18XnrN

File size 128.0 KB ( 131072 bytes )
File type Office Open XML Document
Magic literal
Zip archive data, at least v2.0 to extract

TrID Word Microsoft Office Open XML Format document (52.2%)
Open Packaging Conventions container (38.8%)
ZIP compressed archive (8.8%)
Tags
docx

VirusTotal metadata
First submission 2017-10-12 19:09:12 UTC ( 3 months, 1 week ago )
Last submission 2018-01-03 17:43:34 UTC ( 2 weeks ago )
File names ~WRD0003.tmp
11a6422ab6da62d7aad4f39bed0580db9409f9606e4fa80890a76c7eabfb1c13_~WRD0003.tmp_
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
20

ZipCRC
0x651ec229

FileType
ZIP

ZipCompression
Deflated

ZipUncompressedSize
1554

ZipCompressedSize
412

Warning
Format error reading ZIP file

FileTypeExtension
zip

ZipFileName
[Content_Types].xml

ZipBitFlag
0x0006

ZipModifyDate
1980:01:01 00:00:00

No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!