Malicious Office (OLE) / .XLSX — malware analysis report

Static analysis result for SHA-256 2c84d0fd04d4e4ef…

MALICIOUS

Office (OLE) / .XLSX

2.33 MB
MD5: 2f624302d150e5c28976c49458130008 SHA-1: 0c079c5ede2457612001a03d204997e25e49187e SHA-256: 2c84d0fd04d4e4ef5ee348047df5835c32e40edf7ac08a5a03fb5f54b5883333
60 Risk Score

Malware Insights

MITRE ATT&CK
T1059 Command and Scripting Interpreter

ClamAV has identified this file as Win.Malware.Agent-9796680-0. While no specific document body or scripts were extractable, the heuristic firing indicates the presence of embedded URLs, which are often used for malicious command and control or payload delivery. The exact nature of the agent's activity cannot be determined without further analysis of its behavior.

Heuristics 1

  • ClamAV: Win.Malware.Agent-9796680-0 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Malware.Agent-9796680-0