Malicious Office (OLE) / .DOC — malware analysis report

Static analysis result for SHA-256 13d9fbb219a8d622…

MALICIOUS

Office (OLE) / .DOC

25.0 KB Created: 1986-05-10 08:47:00 Authoring application: Microsoft Word 6.0
MD5: ae14a5f01dbe480e81529d542597fb45 SHA-1: 2c14943f49811df9d79f601544593bd5f6fb6d7f SHA-256: 13d9fbb219a8d62245644b7df8e025724b47000ffc2e00479a4d137f30004367
60 Risk Score

Malware Insights

MITRE ATT&CK
T1203 Exploitation for Client Execution

The file is detected as Win.Trojan.Macro-11 by ClamAV, indicating it is a known macro-based threat. The document body contains references to old file paths and document names, suggesting it may be an older exploit targeting specific Word versions. The lack of explicit script content or URLs makes it difficult to determine the exact payload or delivery mechanism.

Heuristics 1

  • ClamAV: Win.Trojan.Macro-11 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Macro-11