MalwareBazaar Database

This page shows some basic information the YARA rule susp_msoffice_addins_wxll including corresponding malware samples.

Database Entry


YARA Rule:susp_msoffice_addins_wxll
Author:SBousseaden
Description:hunt for suspicious MS Office Addins with code injection capabilities
Firstseen:2021-12-07 13:50:13 UTC
Lastseen:2025-11-04 08:37:17 UTC
Sightings:7

Malware Samples


The table below shows all malware samples that matching this particular YARA rule (max 1000).

Firstseen (UTC)SHA256 hashTagsSignatureReporter