Malicious Office (OLE) / .DOC — malware analysis report

Static analysis result for SHA-256 1a5a7072dcbb2932…

MALICIOUS

Office (OLE) / .DOC

22.0 KB Created: 1986-05-10 09:00:00 Authoring application: Microsoft Word 6.0
MD5: 4523bc3b0ac555c2827e1e6763d41039 SHA-1: 641c55f9620dd243f69714bc877318f3f4a43308 SHA-256: 1a5a7072dcbb2932e0f2f4832cdb954f3b2b140aba0ce6cd432532e53f777257
60 Risk Score

Malware Insights

MITRE ATT&CK
T1059.005 Visual Basic

The file is detected as Win.Trojan.Macro-11 by ClamAV, indicating a macro-based threat. The document body contains references to internal file paths and macro names like AUTOOPEN, further suggesting macro execution. No specific payload or network indicators were extracted, limiting the confidence in a more precise family attribution.

Heuristics 1

  • ClamAV: Win.Trojan.Macro-11 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Macro-11