Malicious Office (OLE) / .DOC — malware analysis report

Static analysis result for SHA-256 798e319c9463c661…

MALICIOUS

Office (OLE) / .DOC

24.0 KB Created: 1998-03-03 14:47:00 Authoring application: Microsoft Word 6.0
MD5: 487cc75b28ad4e56d32e92f42896b222 SHA-1: 4f6a8b598055455bb4444a52e48d3ef17492769e SHA-256: 798e319c9463c661414b80a982787921d3397a3d7f261f925e7befeb09ee419e
60 Risk Score

Malware Insights

MITRE ATT&CK
T1059.005 Visual Basic

The file is a Microsoft Word 6.0 document containing a macro. The heuristic firing 'Win.Trojan.Macro-11' indicates malicious macro content. The document body contains references to file paths and macro names like AUTOOPEN, suggesting an attempt to execute code upon opening.

Heuristics 1

  • ClamAV: Win.Trojan.Macro-11 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Macro-11