Malicious Office (OLE) / .DOC — malware analysis report

Static analysis result for SHA-256 e3ee859e2bb5529d…

MALICIOUS

Office (OLE) / .DOC

13.0 KB Created: 1996-06-25 10:10:00 Authoring application: Microsoft Word 6.0
MD5: 6fbdefe74e1f9723eccac3bd486856af SHA-1: 91d791b54310a853bea11f17823aff2828306748 SHA-256: e3ee859e2bb5529d99a215645e58991c7b848d361a2558bc131e16cd4bd285df
60 Risk Score

Malware Insights

MITRE ATT&CK
T1059.005 Visual Basic

The file is detected as Win.Trojan.Macro-11 by ClamAV, indicating a macro-based threat. The presence of AUTOOPEN and references to Microsoft Word document paths suggest a macro-enabled document designed to execute malicious code upon opening. No specific script content was extracted for further analysis.

Heuristics 1

  • ClamAV: Win.Trojan.Macro-11 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Macro-11