Malicious Office (OLE) / .DOC — malware analysis report

Static analysis result for SHA-256 dd6269d030744cb7…

MALICIOUS

Office (OLE) / .DOC

703.0 KB
MD5: a5c34a6f2173167d0783eecd5b5a10a9 SHA-1: b909e59805a454eeee07e17109ee51d7e022305e SHA-256: dd6269d030744cb70ac43d37c0bce54535779877a647317b5e2638c86e0a6877
60 Risk Score

Malware Insights

MITRE ATT&CK
T1204.002 Malicious File: User Execution

The file is identified as a malicious Office document by ClamAV with a critical heuristic firing. As the document content is encrypted, the specific lure or payload delivery mechanism cannot be determined from the body text. However, the ClamAV detection name 'Doc.Dropper.Agent-7624011-0' strongly suggests its purpose is to drop or execute other malware.

Heuristics 1

  • ClamAV: Doc.Dropper.Agent-7624011-0 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Doc.Dropper.Agent-7624011-0