Emotet — Office (OLE) / .DOC malware analysis

Static analysis result for SHA-256 c2e393ff568f4a87…

MALICIOUS

Office (OLE) / .DOC

124.5 KB Created: 2018-11-15 21:00:12
MD5: 36df9616987f412949fee98ea9f06c97 SHA-1: 1dadc64ebb8f671354dfbbef576fb9f73ca92a67 SHA-256: c2e393ff568f4a87ce48011f10664138e569710f56ddc0462aa7f36bdad5ecad
60 Risk Score

Malware Insights

Emotet · confidence 95%

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The file was detected by ClamAV as 'Doc.Downloader.Emotet-6965633-0', strongly indicating it belongs to the Emotet family. The document body contains warnings in multiple languages about computer viruses, a common social engineering tactic used by Emotet to trick users into enabling malicious content. No scripts were extracted from this sample.

Heuristics 1

  • ClamAV: Doc.Downloader.Emotet-6965633-0 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Doc.Downloader.Emotet-6965633-0