Malicious Office (OLE) — malware analysis report

Static analysis result for SHA-256 7ab3dba16256d9cf…

MALICIOUS

Office (OLE)

12.5 KB Created: 1997-03-16 17:20:00 Authoring application: Microsoft Word 6.0 First seen: 2015-10-01
MD5: c1bf2e437210e371116e84f783701ce0 SHA-1: 94b889339ec3bfba9d6efe9b051fa1dcc07fd470 SHA-256: 7ab3dba16256d9cf70b3f69043956a9e7236e9667eff0ceb4a5ebda667a70872
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The file is detected as a malicious macro-enabled document. The document body contains unusual text strings that may be part of a social engineering lure, possibly related to payment scams or other deceptive content. No specific scripts or URLs were extracted, limiting further analysis of the payload delivery mechanism.

Heuristics 1

  • ClamAV: Win.Trojan.WordMacro-1 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.WordMacro-1