Malicious Office (OLE) / .DOC — malware analysis report

Static analysis result for SHA-256 2e766404c50addd6…

MALICIOUS

Office (OLE) / .DOC

9.0 KB Created: 2018-11-15 21:00:12
MD5: 428869cf7addc9e51f3de840591c5ff9 SHA-1: 5c932ab0b66715fcd24a53a8ad3ae8af5efcc8ae SHA-256: 2e766404c50addd67ef227c566ce09080620b4630c9de43a78502606ae6e282c
60 Risk Score

Malware Insights

MITRE ATT&CK
T1204.002 Malicious File

The file is detected as a malicious dropper by ClamAV. The document body text, 'Don't open computer viruses.', is a deceptive lure, suggesting the document itself is related to viruses, potentially to trick users into interacting with it. No specific malware family could be identified from the available evidence.

Heuristics 1

  • ClamAV: Doc.Dropper.Agent-6833898-0 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Doc.Dropper.Agent-6833898-0