Malicious Office (OLE) / .DOCX — malware analysis report

Static analysis result for SHA-256 8d8e444568b95c9d…

MALICIOUS

Office (OLE) / .DOCX

7.5 KB Created: 1997-02-01 19:31:00 Authoring application: Microsoft Word 6.0
MD5: 104895a4d9953aa44eeaddd49316935f SHA-1: 919883f189757ffb724f53c4265d56b98c4c0f00 SHA-256: 8d8e444568b95c9d38676ef4f29c7b60e27f35ca4305a6c882adfd008132a0fd
60 Risk Score

Malware Insights

The file is detected as Win.Trojan.Wazzu-26 by ClamAV. The document body contains VBA macro-related keywords such as AutoOpen, AutoClose, AutoExec, and AutoNew, indicating the presence of malicious macros. The document's content appears to be standard formatting text, suggesting a lure to execute the embedded macro.

Heuristics 1

  • ClamAV: Win.Trojan.Wazzu-26 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Wazzu-26