× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 6f785dcd067cab0fa9b0ecb39906848fc8d6aa9f0baac884bf87b121a5f24241
File name: emotet_e1_6f785dcd067cab0fa9b0ecb39906848fc8d6aa9f0baac884bf87b12...
Detection ratio: 13 / 58
Analysis date: 2019-01-22 01:08:32 UTC ( 3 months, 4 weeks ago )
Antivirus Result Update
Ad-Aware VB.EmoDldr.6.Gen 20190122
BitDefender VB.EmoDldr.6.Gen 20190121
F-Secure VB.EmoDldr.6.Gen 20190122
Fortinet VBA/Agent.CPC!tr.dldr 20190121
GData VB.EmoDldr.6.Gen 20190121
Ikarus Trojan-Downloader.VBA.Agent 20190121
MAX malware (ai score=82) 20190122
McAfee W97M/Downloader.cqc 20190121
McAfee-GW-Edition W97M/Downloader.cqc 20190121
Microsoft Trojan:Script/Foretype.A!ml 20190122
NANO-Antivirus Trojan.Ole2.Vbs-heuristic.druvzi 20190121
Qihoo-360 virus.office.qexvmc.1075 20190122
Zoner Probably MacroXML 20190121
Acronis 20190119
AegisLab 20190122
AhnLab-V3 20190121
Alibaba 20180921
ALYac 20190121
Antiy-AVL 20190122
Arcabit 20190121
Avast 20190121
Avast-Mobile 20190121
AVG 20190121
Avira (no cloud) 20190121
Babable 20180918
Baidu 20190121
Bkav 20190121
CAT-QuickHeal 20190121
ClamAV 20190121
CMC 20190121
Comodo 20190121
CrowdStrike Falcon (ML) 20181023
Cybereason 20190109
Cylance 20190122
Cyren 20190121
DrWeb 20190121
eGambit 20190122
Emsisoft 20190121
Endgame 20181108
ESET-NOD32 20190122
F-Prot 20190121
Sophos ML 20181128
Jiangmin 20190121
K7AntiVirus 20190121
K7GW 20190121
Kaspersky 20190121
Kingsoft 20190122
Malwarebytes 20190121
eScan 20190121
Palo Alto Networks (Known Signatures) 20190122
Panda 20190121
Rising 20190121
SentinelOne (Static ML) 20190118
Sophos AV 20190121
SUPERAntiSpyware 20190116
Symantec 20190121
TACHYON 20190122
Tencent 20190122
TheHacker 20190118
TotalDefense 20190121
Trapmine 20190103
TrendMicro 20190121
TrendMicro-HouseCall 20190121
Trustlook 20190122
VBA32 20190121
VIPRE 20190121
ViRobot 20190121
Webroot 20190122
Yandex 20190120
Zillya 20190118
ZoneAlarm by Check Point 20190121
File identification
MD5 e8961335cc98fddb86ab179e801e785c
SHA1 39acc27a51dee2f2256785fbc2606b90e70658fb
SHA256 6f785dcd067cab0fa9b0ecb39906848fc8d6aa9f0baac884bf87b121a5f24241
ssdeep
1536:EYHZldswpNmHXwJBe6Ogyn1NY3R6aEqQmCVnD32+1SWvySdtxX:rzxNQge6cYymCdvaktxX

File size 92.3 KB ( 94512 bytes )
File type XML
Magic literal
XML document text

TrID Microsoft Office XML Flat File Format Word Document (ASCII) (65.1%)
Microsoft Office XML Flat File Format (ASCII) (31.0%)
Generic XML (ASCII) (2.3%)
HyperText Markup Language (1.4%)
Tags
xml

VirusTotal metadata
First submission 2019-01-22 01:08:32 UTC ( 3 months, 4 weeks ago )
Last submission 2019-01-22 01:08:32 UTC ( 3 months, 4 weeks ago )
File names emotet_e1_6f785dcd067cab0fa9b0ecb39906848fc8d6aa9f0baac884bf87b121a5f24241_2019-01-21__230502.doc
ExifTool file metadata
WordDocumentFontsFontPitchVal
variable

WordDocumentBodySectPRPictShapeType
#_x0000_t75

WordDocumentBodySectPRPictShapeStyle
width:442.5pt;height:132.75pt;visibility:visible;mso-wrap-style:square

WordDocumentDocumentPropertiesCharacters
12

WordDocumentBodySectSectPrPgMarBottom
1440

WordDocumentStylesStyleNameVal
Normal

WordDocumentStylesStyleRPrLangBidi
AR-SA

WordDocumentBodySectPRPictShapetypeId
_x0000_t75

MIMEType
application/xml

WordDocumentStylesStyleTblPrTblCellMarTopType
dxa

WordDocumentBodySectPRPictShapeSpid
_x0000_i1025

WordDocumentStylesStyleRsidVal
003B0670

WordDocumentBodySectPRPictShapetypePathConnecttype
rect

WordDocumentBgPictBackgroundBgcolor
#00AEEA

WordDocumentBodySectSectPrPgMarRight
1440

WordDocumentShapeDefaultsShapelayoutIdmapExt
edit

WordDocumentBodySectPRPictShapetypePathExtrusionok
f

WordDocumentShapeDefaultsShapedefaultsExt
edit

WordDocumentBodySectPRPictShapeId
Picture 1

WordDocumentStylesStyleTblPrTblCellMarRightType
dxa

WordDocumentFontsFontName
Times New Roman

WordDocumentBodySectPRPictShapetypeFormulasFEqn
if lineDrawn pixelLineWidth 0

WordDocumentStylesStyleTblPrTblCellMarTopW
0

WordDocumentFontsDefaultFontsCs
Times New Roman

WordDocumentBodySectPRPictShapetypeLockAspectratio
t

WordDocumentStylesStylePPrSpacingLine
259

WordDocumentDocSuppDataBinDataName
editdata.mso

WordDocumentDocPrZoomPercent
100

WordDocumentBodySectSectPrPgSzH
15840

WordDocumentFontsDefaultFontsAscii
Calibri

WordDocumentStylesStyleStyleId
Normal

WordDocumentBodySectSectPrPgSzW
12240

WordDocumentBodySectPRPictShapetypePreferrelative
t

WordDocumentStylesStylePPrSpacingAfter
160

WordDocumentOcxPresent
no

WordDocumentStylesStyleTblPrTblIndType
dxa

WordDocumentDocPrRsidsRsidRootVal
005E6EE1

WordDocumentDocumentPropertiesLastSaved
2019:01:21 22:10:00Z

WordDocumentBodySectPRPictShapetypeLockExt
edit

WordDocumentBodySectSectPrPgMarLeft
1440

WordDocumentBodySectSectPrColsSpace
720

FileType
XML

WordDocumentDocumentPropertiesPages
1

WordDocumentShapeDefaultsShapedefaultsColormruExt
edit

WordDocumentStylesLatentStylesLsdExceptionName
Normal

WordDocumentStylesStyleTblPrTblCellMarRightW
108

WordDocumentDocPrDefaultTabStopVal
720

WordDocumentDocumentPropertiesRevision
1

WordDocumentBodySectSectPrPgMarFooter
720

WordDocumentDocumentPropertiesTotalTime
0

WordDocumentBodySectSectPrPgMarTop
1440

WordDocumentStylesStyleUiNameVal
Table Normal

WordDocumentBodySectSectPrPgMarHeader
720

WordDocumentDocumentPropertiesParagraphs
1

WordDocumentBodySectPRRsidRPr
00281A0B

WordDocumentBodySectPRsidR
005E6EE1

WordDocumentBodySectPRPictShapetypeStroked
f

WordDocumentBodySectPRPictShapetypeCoordsize
21600,21600

WordDocumentDocPrCharacterSpacingControlVal
DontCompress

WordDocumentEmbeddedObjPresent
no

WordDocumentStylesStyleRPrRFontsAscii
Tahoma

WordDocumentStylesVersionOfBuiltInStylenamesVal
7

WordDocumentIgnoreSubtreeVal
http://schemas.microsoft.com/office/word/2003/wordml/sp2

WordDocumentShapeDefaultsShapedefaultsColormruColors
#00aeea

WordDocumentStylesStyleTblPrTblCellMarBottomType
dxa

WordDocumentFontsFontCharsetVal
00

WordDocumentDocumentPropertiesLines
1

WordDocumentStylesStyleTblPrTblCellMarBottomW
0

WordDocumentStylesLatentStylesDefLockedState
off

WordDocumentDocPrRsidsRsidVal
00005EB7

WordDocumentBodySectPRPictShapetypeFilled
f

WordDocumentBodySectPRPictShapeImagedataSrc
wordml://02000001.jpg

WordDocumentBodySectPRPictShapetypeStrokeJoinstyle
miter

WordDocumentDocumentPropertiesCharactersWithSpaces
13

WordDocumentStylesStyleLinkVal
BalloonTextChar

WordDocumentStylesLatentStylesLatentStyleCount
375

WordDocumentDocPrAlwaysShowPlaceholderTextVal
off

WordDocumentBodySectPRPictShapetypePath
m@4@5l@4@11@9@11@9@5xe

WordDocumentDocumentPropertiesCreated
2019:01:21 22:10:00Z

WordDocumentStylesStyleRPrRFontsCs
Tahoma

WordDocumentBodySectSectPrPgMarGutter
0

WordDocumentDocPrViewVal
print

WordDocumentBodySectPRsidRDefault
00BB56CC

WordDocumentStylesStyleTblPrTblCellMarLeftW
108

WordDocumentMacrosPresent
yes

WordDocumentFontsFontFamilyVal
Roman

WordDocumentStylesStyleRPrLangVal
EN-US

WordDocumentDocumentPropertiesWords
2

WordDocumentStylesStyleTblPrTblIndW
0

WordDocumentFontsDefaultFontsFareast
Calibri

WordDocumentStylesStyleRPrSzVal
22

FileTypeExtension
xml

WordDocumentShapeDefaultsShapelayoutExt
edit

WordDocumentBodySectPRPictShapetypePathGradientshapeok
t

WordDocumentStylesStyleRPrLangFareast
EN-US

WordDocumentShapeDefaultsShapedefaultsSpidmax
1026

WordDocumentStylesStyleBasedOnVal
Normal

WordDocumentBodySectPRPictBinDataName
wordml://02000001.jpg

WordDocumentBodySectSectPrRsidR
00005EB7

WordDocumentDocPrPixelsPerInchVal
120

WordDocumentDocPrIgnoreMixedContentVal
off

WordDocumentBodySectPRPictShapetypeSpt
75

WordDocumentStylesStyleRPrFontVal
Calibri

WordDocumentStylesStyleTblPrTblCellMarLeftType
dxa

WordDocumentDocPrSaveInvalidXMLVal
off

WordDocumentDocumentPropertiesVersion
16

WordDocumentStylesStyleDefault
on

WordDocumentShapeDefaultsShapelayoutIdmapData
1

WordDocumentStylesStyleType
paragraph

No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!