Malicious Office (OLE) — malware analysis report

Static analysis result for SHA-256 d85f65e764ca2607…

MALICIOUS

Office (OLE)

13.5 KB Created: 1998-05-12 13:27:10 Authoring application: Microsoft Excel First seen: 2012-06-14
MD5: fcd3cde50a0da4dccd087301743f790d SHA-1: 493cfeaf81859e09b0173aaf3532e9e38831fa9a SHA-256: d85f65e764ca26074d62dfc5fd13c278917156b070ab455b7dbbf4b415c4c9c2
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The file is identified as malicious by ClamAV with the signature Win.Trojan.Neg-1. The document body contains a message that appears to be a lure, possibly related to police or legal matters, intended to trick the user into interacting with the malicious content. No scripts or further IOCs were extracted.

Heuristics 1

  • ClamAV: Win.Trojan.Neg-1 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Neg-1