Malicious Office (OLE) / .DOC — malware analysis report

Static analysis result for SHA-256 baf5bd5fec474dc5…

MALICIOUS

Office (OLE) / .DOC

886.5 KB
MD5: c69c266c2adc285d4ffae01375f63fd5 SHA-1: 3c59f4109fe7e3c6fc2685ddc30e643b58f7ad4a SHA-256: baf5bd5fec474dc5cac3f43129a9eb82b29f44835b5d0e8c9dcfdba8a001b646
60 Risk Score

Malware Insights

MITRE ATT&CK
T1204.002 Malicious File

Static analysis identified the file as a malicious document dropper (ClamAV: Doc.Dropper.Agent-7550690-0). The document itself is encrypted, preventing analysis of its body content. However, the heuristic detection strongly suggests the file's purpose is to download and execute additional malware. No specific family could be identified due to the lack of extractable content and script analysis.

Heuristics 1

  • ClamAV: Doc.Dropper.Agent-7550690-0 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Doc.Dropper.Agent-7550690-0