Laroux — Office (OLE) / .EXE malware analysis

Static analysis result for SHA-256 01d07732270bf88e…

MALICIOUS

Office (OLE) / .EXE

67.5 KB Created: 1999-02-08 09:24:15 Authoring application: Microsoft Excel
MD5: 44a853007dea52c51f4d35473239fc0e SHA-1: 845c3612dda70af6ea601f3e9061c5e5c7d11d59 SHA-256: 01d07732270bf88e07ca9cabd923e418d5648f3194d81b6a99e34c271ae37b95
60 Risk Score

Malware Insights

Laroux · confidence 95%

MITRE ATT&CK
T1059.005 Visual Basic

The critical heuristic firing for OLE_XLS5_LAROUX_MACRO_VIRUS strongly indicates the presence of the Laroux macro virus within this Excel file. This family of malware is known for its ability to spread and infect other Excel workbooks. No specific IOCs were extracted, but the presence of the macro itself is the primary indicator of compromise.

Heuristics 1

  • Excel 5 Laroux/Larou-CV macro-virus marker cluster critical OLE_XLS5_LAROUX_MACRO_VIRUS
    Legacy Excel workbook contains a Laroux/Larou-CV macro-virus marker cluster including auto_open execution and workbook/module replication strings. This is a narrow indicator for an infected legacy Excel macro workbook.