× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 2e766404c50addd67ef227c566ce09080620b4630c9de43a78502606ae6e282c
File name: virus-for-you.doc
Detection ratio: 15 / 57
Analysis date: 2018-12-10 18:02:07 UTC ( 1 month, 1 week ago ) View latest
Antivirus Result Update
Ad-Aware Trojan.Hoax.U 20181210
AegisLab Trojan.MSWord.Hoax.4!c 20181210
ALYac Trojan.Hoax.U 20181210
Arcabit Trojan.Hoax.U 20181210
BitDefender Trojan.Hoax.U 20181210
Cyren Trojan.TVBL-61 20181210
Emsisoft Trojan.Hoax.U (B) 20181210
F-Secure Trojan.Hoax.U 20181210
GData Trojan.Hoax.U 20181210
Ikarus Trojan.O97M.Donoff 20181210
McAfee RDN/Generic.dx 20181210
McAfee-GW-Edition RDN/Generic.dx 20181210
Microsoft Trojan:O97M/Donoff 20181210
eScan Trojan.Hoax.U 20181210
Qihoo-360 Win32/Trojan.Hoax.3d8 20181210
AhnLab-V3 20181210
Alibaba 20180921
Antiy-AVL 20181210
Avast 20181210
Avast-Mobile 20181210
AVG 20181210
Avira (no cloud) 20181210
Babable 20180918
Baidu 20181207
Bkav 20181210
CAT-QuickHeal 20181210
ClamAV 20181210
CMC 20181209
Comodo 20181210
CrowdStrike Falcon (ML) 20181022
Cybereason 20180225
Cylance 20181210
DrWeb 20181210
eGambit 20181210
Endgame 20181108
ESET-NOD32 20181210
F-Prot 20181210
Fortinet 20181210
Sophos ML 20181128
Jiangmin 20181210
K7AntiVirus 20181210
K7GW 20181210
Kaspersky 20181210
Kingsoft 20181210
Malwarebytes 20181210
MAX 20181210
NANO-Antivirus 20181210
Palo Alto Networks (Known Signatures) 20181210
Panda 20181210
Rising 20181210
SentinelOne (Static ML) 20181011
Sophos AV 20181210
SUPERAntiSpyware 20181205
Symantec 20181210
Symantec Mobile Insight 20181207
TACHYON 20181210
Tencent 20181210
TheHacker 20181202
Trapmine 20181205
TrendMicro 20181210
TrendMicro-HouseCall 20181210
Trustlook 20181210
VBA32 20181210
ViRobot 20181210
Webroot 20181210
Yandex 20181207
Zillya 20181208
ZoneAlarm by Check Point 20181210
Zoner 20181210
The file being studied follows the Compound Document File format! More specifically, it is a MS Word Document file.
Summary
edit_time
57
code_page
-535
creation_datetime
2018-11-15 22:00:12
revision_number
1
last_saved
2018-11-15 22:01:09
Document summary
code_page
-535
OLE Streams
name
Root Entry
clsid
00020906-0000-0000-c000-000000000046
type_literal
root
clsid_literal
MS Word
sid
0
size
6016
type_literal
stream
sid
1
name
\x01CompObj
size
106
type_literal
stream
sid
2
name
\x01Ole
size
20
type_literal
stream
sid
6
name
\x05DocumentSummaryInformation
size
116
type_literal
stream
sid
4
name
\x05SummaryInformation
size
312
type_literal
stream
sid
3
name
1Table
size
1693
type_literal
stream
sid
5
name
WordDocument
size
3620
ExifTool file metadata
MIMEType
application/msword

LanguageCode
English (US)

CompObjUserType
Microsoft Word-Dokument

ModifyDate
2018:11:15 21:01:09

Characters
28

TotalEditTime
0

CreateDate
2018:11:15 21:00:12

Lines
1

System
Windows

LastPrinted
0000:00:00 00:00:00

Pages
1

CompObjUserTypeLen
24

FileType
DOC

Identification
Word 8.0

Words
4

Paragraphs
1

FileTypeExtension
doc

Word97
No

DocFlags
1Table, ExtChar

CodePage
Unicode (UTF-8)

RevisionNumber
1

File identification
MD5 428869cf7addc9e51f3de840591c5ff9
SHA1 5c932ab0b66715fcd24a53a8ad3ae8af5efcc8ae
SHA256 2e766404c50addd67ef227c566ce09080620b4630c9de43a78502606ae6e282c
ssdeep
48:9BTyHUGbLrzKkAvAJCFvnU6zjzzNszppQXYMHzE0ddFoY:9RyUGbvzKFnUWjzzNszppMpQ0n3

File size 9.0 KB ( 9217 bytes )
File type MS Word Document
Magic literal
CDF V2 Document, Little Endian, Os: Windows, Version 1.0, Code page: -535, Revision Number: 1, Total Editing Time: 00:57, Create Time/Date: Wed Nov 14 21:00:12 2018, Last Saved Time/Date: Wed Nov 14 21:01:09 2018

TrID Microsoft Word document (54.2%)
Microsoft Word document (old ver.) (32.2%)
Generic OLE2 / Multistream Compound File (13.5%)
Tags
doc

VirusTotal metadata
First submission 2018-11-16 05:04:27 UTC ( 2 months ago )
Last submission 2019-01-20 19:40:06 UTC ( 14 hours, 46 minutes ago )
File names output.114916085.txt
output.114719902.txt
zel.exe
output.114688063.txt
112018
emotet_e1_2e766404c50addd67ef227c566ce09080620b4630c9de43a78502606ae6e282c_2018-12-11__05:20:03.doc
virus-for-you (1).doc
output.114916084.txt
output.114713839.txt
428869cf7addc9e51f3de840591c5ff9_exe
output.114713836.txt
2e766404c50addd67ef227c566ce09080620b4630c9de43a78502606ae6e282c.bin(0)
output.114699687.txt
output.114713838.txt
virus-for-you.doc
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!