Headers:
Message body:
From: {adwokat.zabrze@interia.eu}
Subject: Re:faktura
Attached to the email is a ZIP file:
Witam
Przesyłam w załączeniu fakturę. Proszę doliczyć do najbliższej opłaty.
DOC150114-faktura.doc.zip
On the Windows machine, Inside the zip, is Windows executable (Note the dual extension)
DOC150114-faktura.doc.exe
Md5 Hashes:
3bcfe0c5364fa07f09ae44306da8dd82
Malware Information:
VirusTotal Report [1]
(hits 8/57 Virus Scanners)
Malwr Report [1]
Summary:
File has been identified by at least one AntiVirus on VirusTotal as maliciousExecuted a process and injected code into it, probably while unpackingInstalls itself for autorun at Windows startup
Cheers,
Steve
Sanesecurity.com
No comments:
Post a Comment