Malicious Office (OLE) / .EXE — malware analysis report

Static analysis result for SHA-256 896dbc686a87e502…

MALICIOUS

Office (OLE) / .EXE

36.5 KB Created: 1998-05-15 09:05:03 Authoring application: Microsoft Excel
MD5: 8a842085beb757d93e885a08484f7106 SHA-1: f33b3d50e5957d4fb0f580bfcddc9561d883d86a SHA-256: 896dbc686a87e502e1c909290f5cefb5571470ca7b4701c9d115a6aca0ebef31
60 Risk Score

Malware Insights

MITRE ATT&CK
T1059.005 Visual Basic

The critical heuristic firing for OLE_XLS5_LAROUX_MACRO_VIRUS indicates this is an Excel 5 macro virus, commonly known as Laroux. These viruses typically spread by infecting other Excel workbooks. No specific IOCs were extracted, and the document body was unreadable.

Heuristics 1

  • Excel 5 Laroux/Larou-CV macro-virus marker cluster critical OLE_XLS5_LAROUX_MACRO_VIRUS
    Legacy Excel workbook contains a Laroux/Larou-CV macro-virus marker cluster including auto_open execution and workbook/module replication strings. This is a narrow indicator for an infected legacy Excel macro workbook.