Malicious Office (OLE) / .DOC — malware analysis report

Static analysis result for SHA-256 1ff165bb3396c55c…

MALICIOUS

Office (OLE) / .DOC

11.0 KB Created: 1986-05-06 09:26:00 Authoring application: Microsoft Word 6.0
MD5: 8db4fb8b42fe3042cb6527f6de7990fb SHA-1: 9cb70da0d8f830cb43dfc6c3fad0bd17480dd86c SHA-256: 1ff165bb3396c55c64b2d57cb6804f4cc1d19ffebf3af3ad184a5cb0309d4a61
60 Risk Score

Malware Insights

MITRE ATT&CK
T1059.005 Visual Basic

The file is detected as malicious by ClamAV with the signature Win.Trojan.Macro-11, indicating a known macro-based threat. The document body contains file paths and names that suggest it may be part of a larger malware distribution or infection chain. No scripts were extracted, but the heuristic firing strongly suggests macro-based execution of a malicious payload.

Heuristics 1

  • ClamAV: Win.Trojan.Macro-11 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Macro-11