Malicious Office (OLE) / .DOC — malware analysis report

Static analysis result for SHA-256 9facf8cda0a8e005…

MALICIOUS

Office (OLE) / .DOC

210.5 KB Created: 2007-03-21 04:02:00 Authoring application: Microsoft Office Word
MD5: d15154cb82709269021b32cb6486119a SHA-1: caa76ae1e1189cc5365cad528930254c45a1130c SHA-256: 9facf8cda0a8e005eaa816df5fde45006e11ab55a475eda7ed1c9c13d28710a7
60 Risk Score

Malware Insights

MITRE ATT&CK
T1059.001 PowerShell

The file is detected as a malicious macro-laden document. The document body contains text related to a 'Commercial Modernization Plan' which appears to be a lure. The presence of a critical ClamAV detection for 'Win.Trojan.Macro-11' strongly suggests malicious macro activity, likely for downloading and executing a second-stage payload.

Heuristics 1

  • ClamAV: Win.Trojan.Macro-11 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Macro-11