Malicious Office (OLE) / .DOC — malware analysis report

Static analysis result for SHA-256 d24cc19924e1ace1…

MALICIOUS

Office (OLE) / .DOC

714.5 KB
MD5: 1fa937c158061d947fba6458e3df59c6 SHA-1: 07b529c8e59db2e20106d02e6710a664ade4063b SHA-256: d24cc19924e1ace1712098fbfe27a3cae91b9d43eb878d3f28299f5bc6cba2d1
60 Risk Score

Malware Insights

MITRE ATT&CK
T1204.002 Malicious File

Static analysis identified the file as a malicious Office document based on ClamAV detection (Doc.Dropper.Agent-7663422-0). The document is encrypted, preventing further analysis of its body or embedded scripts. The primary function appears to be that of a dropper, indicating it is intended to download and execute a second-stage payload.

Heuristics 1

  • ClamAV: Doc.Dropper.Agent-7663422-0 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Doc.Dropper.Agent-7663422-0