Malicious Office (OLE) / .DOT — malware analysis report

Static analysis result for SHA-256 77162e5b14e6d165…

MALICIOUS

Office (OLE) / .DOT

17.5 KB Created: 1997-05-20 09:23:00 Authoring application: Microsoft Word for Windows 95
MD5: 5796734c33083d5442bb73a740c8e82e SHA-1: 1ebf56c92035134504ae86cf239f5e0d4614e84e SHA-256: 77162e5b14e6d165721b1c35ed3ffecf8c8475fbeb532426e8e8bf50746b7671
60 Risk Score

Malware Insights

MITRE ATT&CK
T1059.005 Visual Basic T1566.001 Spearphishing Attachment

The file is a Microsoft Word 95 template containing a macro. The heuristic firing 'Win.Trojan.Macro-11' indicates the presence of malicious macro code. The document body contains strings related to printer drivers and file paths, suggesting a lure to trick the user into enabling and running the macro, likely to install malware.

Heuristics 1

  • ClamAV: Win.Trojan.Macro-11 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Macro-11