Malicious Office (OLE) — malware analysis report

Static analysis result for SHA-256 d072ca497232cbbd…

MALICIOUS

Office (OLE)

7.0 KB First seen: 2012-06-14
MD5: ab8c561cbb6dab3d7fed81fc3eaedd27 SHA-1: f6a625007b5c2eadc41cd48a6df3b8c147862b39 SHA-256: d072ca497232cbbd75e350bec9ce182c60bb5bda7e58c133f2a7acf8eaf59fa2
60 Risk Score

Malware Insights

The file is identified as a macro virus by ClamAV. The document body contains text that explicitly mentions 'RSN MACRO VIRUS Goat file' and 'Costin RAIU', suggesting it is a known, albeit old, macro-based threat. No specific malicious URLs or scripts were extracted, limiting the IOCs.

Heuristics 1

  • ClamAV: Win.Trojan.Spy-7 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Spy-7