Win.Trojan.Concept-14 — Office (OLE) malware analysis

Static analysis result for SHA-256 316e6f9a48dd474b…

MALICIOUS

Office (OLE)

7.0 KB First seen: 2012-06-14
MD5: 5e9d2afca0f4838cbf79f99106f85fcc SHA-1: 4e2f9800aaf4ffa4b9f58ba152a3e3d3310db0c6 SHA-256: 316e6f9a48dd474bc1e7a0c0c3ddc8c65ed4e7ef57ca0816cf8131993c5881a9
60 Risk Score

Malware Insights

Win.Trojan.Concept-14 · confidence 95%

The file is identified as a macro virus, specifically 'Win.Trojan.Concept-14', by ClamAV. The document body contains text explicitly stating it is a 'RSN MACRO VIRUS Goat file' and mentions 'macro virus' multiple times, indicating its nature. The presence of VBA macro-related terms and the file type strongly suggest the use of Visual Basic for macro execution.

Heuristics 1

  • ClamAV: Win.Trojan.Concept-14 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Concept-14