Malicious Office (OOXML) / .XLSX — malware analysis report

Static analysis result for SHA-256 3b34ccef3ed30830…

MALICIOUS

Office (OOXML) / .XLSX

291.1 KB Created: 2006-09-16 00:00:00 UTC Authoring application: Microsoft Excel 14.0300
MD5: 929a7307d52218811241ef3295984fb3 SHA-1: 261d726060744924c4915dc6a0e699b8cbf110cc SHA-256: 3b34ccef3ed308301833f49d7b31c8172d86e3c41c1bc36e10f30ee3b29a0065
60 Risk Score

Malware Insights

MITRE ATT&CK
T1204 Malicious File Execution

Static analysis identified the file as a malicious Excel spreadsheet. The ClamAV heuristic firing, 'Win.Malware.Agent-9965857-0', strongly suggests the presence of malware, likely an agent or downloader. Without further script or body content, the exact execution chain is unclear, but the file's nature points to a payload delivery mechanism.

Heuristics 1

  • ClamAV: Win.Malware.Agent-9965857-0 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Malware.Agent-9965857-0