MALICIOUS
70
Risk Score
Heuristics 3
-
ClamAV: Xml.Exploit.External_Relationship_Abuse-9987932-1 critical CLAMAV_DETECTIONClamAV detected this file as malware: Xml.Exploit.External_Relationship_Abuse-9987932-1
-
External hyperlinks (1) low OOXML_EXTERNAL_HYPERLINKSDocument contains 1 external hyperlink — clickable URLs are stored as external relationships. First target: powershell.exe -NoExit -EncodedCommand ZQBjAGgAbwAgACIAWAA1AE8AIQBQACUAQABBAFAAWwA0AFwAUABaAFgANQA0ACgAUABeACkANwBDAEMAKQA3AH0AYAAkAEUASQBDAEEAUgAtAFMAVABBAE4AR
-
Embedded URL info EMBEDDED_URLOne or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.URL https://github.com/mattias-ohlsson/eicar-standard-antivirus-test-files Document hyperlink
- http://www.metadataworkinggroup.com/schemas/regions/Document hyperlink
- http://ns.adobe.com/xap/1.0/Document hyperlink
- http://www.w3.org/1999/02/22-rdf-syntax-ns#Document hyperlink
- http://ns.adobe.com/photoshop/1.0/Document hyperlink
- http://ns.adobe.com/xmp/sType/Area#Document hyperlink
- http://ns.apple.com/faceinfo/1.0/Document hyperlink
- http://ns.adobe.com/xap/1.0/sType/Dimensions#Document hyperlink
Open this report in the interactive analyzer, or submit your own file for analysis.