Malicious Office (OLE) / .EXE — malware analysis report

Static analysis result for SHA-256 d7e4fd7fe7a1388d…

MALICIOUS

Office (OLE) / .EXE

22.5 KB Created: 1993-09-28 15:08:00 Authoring application: Microsoft Word for Windows 95
MD5: ff0467d9653a67bd0d507f4fd9d31aed SHA-1: 445394dde48e199786300866292fabfc599b8834 SHA-256: d7e4fd7fe7a1388d7780df324b4505c11012bf19830bd5e3e3eeb49ba31d98f3
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The file is detected as Win.Trojan.Cap-1 by ClamAV, indicating malicious intent. The document body contains seemingly innocuous text about concerts and sales, which is a common lure tactic to encourage user interaction. No scripts were extracted from this sample, and the embedded URL heuristic fired, suggesting the document may attempt to download further malicious content.

Heuristics 1

  • ClamAV: Win.Trojan.Cap-1 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Cap-1