Win.Trojan.Tabej-1 — Office (OLE) malware analysis

Static analysis result for SHA-256 aceaaf7041576761…

MALICIOUS

Office (OLE)

26.0 KB Authoring application: Microsoft Excel First seen: 2012-06-14
MD5: ac7e7f598063f3c45142d0e328aacc27 SHA-1: 261a2568528a8bcdec57d52b80eebb7c371d2530 SHA-256: aceaaf7041576761b2be99b498194a29af79351a3199d49b2cbe79c68bec70e8
60 Risk Score

Malware Insights

Win.Trojan.Tabej-1 · confidence 85%

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The file is identified as malicious by ClamAV with the signature Win.Trojan.Tabej-1. The document body presents financial calculation fields, suggesting a lure to trick the user into enabling macros. Enabling macros would likely lead to the execution of a malicious payload, consistent with a trojan.

Heuristics 1

  • ClamAV: Win.Trojan.Tabej-1 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Tabej-1