Malicious Office (OLE) / .DOC — malware analysis report

Static analysis result for SHA-256 7a5f959e1476249b…

MALICIOUS

Office (OLE) / .DOC

2.5 KB First seen: 2023-07-05
MD5: 6114a4f1518ca985e2afc8f2de284029 SHA-1: c19cace51fdf72dca292b4cdaca018a03fcd72f4 SHA-256: 7a5f959e1476249b7a292b347aa5153db9c873d6cfd6f01a7e1e4ff0730bc88d
60 Risk Score

Malware Insights

MITRE ATT&CK
T1204.002 Malicious File

The critical heuristic firing indicates exploitation of CVE-2017-8570, which is known to drop an SCT script file. The extracted temporary path '%TMP%\FZdtfhgYgeghD\.scT' likely represents the dropped script. This exploit is commonly used to download and execute further malicious payloads.

Heuristics 1

  • Composite Moniker — CVE-2017-8570 (drops SCT script) critical CVE likely CVE_2017_8570
    Composite Moniker — CVE-2017-8570 (drops SCT script)