Malicious Office (OLE) / .EXE — malware analysis report

Static analysis result for SHA-256 74f17242b31eb891…

MALICIOUS

Office (OLE) / .EXE

27.5 KB Created: 1998-09-16 12:38:56 Authoring application: Microsoft Excel
MD5: 19c1e12c7cd9e134904bf24b5fa4395b SHA-1: 7753e59009c7e13b38e2e528b6c7d1294a2ac11c SHA-256: 74f17242b31eb8913057a90042673e19b81352e4c91354d4d28332ef69c5cce0
60 Risk Score

Malware Insights

MITRE ATT&CK
T1059.005 Visual Basic

The critical heuristic firing for OLE_XLS5_LAROUX_MACRO_VIRUS indicates the presence of the Laroux-CV macro virus, a well-known threat. The presence of 'auto_open' and other macro-related markers suggests the virus attempts to execute automatically and spread. No specific IOCs were extracted, but the nature of the virus implies macro execution and potential system compromise.

Heuristics 1

  • Excel 5 Laroux/Larou-CV macro-virus marker cluster critical OLE_XLS5_LAROUX_MACRO_VIRUS
    Legacy Excel workbook contains a Laroux/Larou-CV macro-virus marker cluster including auto_open execution and workbook/module replication strings. This is a narrow indicator for an infected legacy Excel macro workbook.