Malicious Office (OLE) — malware analysis report

Static analysis result for SHA-256 e0a60a882a69d915…

MALICIOUS

Office (OLE)

38.5 KB Authoring application: Microsoft Excel First seen: 2012-06-14
MD5: f87f35100266c9b2c31adaf6a1a99fca SHA-1: b46a3da97d46421bb3d0d296f11710ca2274527b SHA-256: e0a60a882a69d915e3bb848731c20087ae4be200a4105d17e93c9566d2e263ce
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The file is identified as malicious by ClamAV with the signature Win.Trojan.Extras-1. The document body contains financial calculation fields, suggesting a lure to trick the user into opening the file. No scripts were extracted, and the document body's content is largely unreadable, limiting further analysis of the specific payload or delivery mechanism.

Heuristics 1

  • ClamAV: Win.Trojan.Extras-1 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Extras-1