MALICIOUS
62
Risk Score
Malware Insights
MITRE ATT&CK
T1059 Command and Scripting Interpreter
The file was detected by ClamAV as Win.Joke.Apeldorn-2. Although VBA macros could not be extracted due to an unsupported format, the document body contains text that defines and differentiates computer viruses, worms, and trojans. This content appears to be a lure to encourage users to visit the embedded unknown reputation URLs, potentially for malicious purposes.
Heuristics 3
-
ClamAV: Win.Joke.Apeldorn-2 critical CLAMAV_DETECTIONClamAV detected this file as malware: Win.Joke.Apeldorn-2
-
Unsupported Office format for VBA extraction info OFFICE_FORMAT_UNSUPPORTEDolevba could not extract VBA macros (error); format-agnostic byte-level scans still ran. Likely legacy, encrypted, or malformed OLE/OOXML — re-scanning the same bytes will yield the same outcome.
-
Embedded URL info EMBEDDED_URLOne or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.URL http://virusattack.virusattack.com.ar/hoaxes/verHoax.php3?idhoax=78
- http://antimalwareonlinescannerv3.com
- http://www.elhacker.net/hacking-programas-hack.htm
- http://schemas.openxmlformats.org/drawingml/2006/main
Open this report in the interactive analyzer, or submit your own file for analysis.