Malicious Office (OLE) — malware analysis report

Static analysis result for SHA-256 f9ab97e09808aeec…

MALICIOUS

Office (OLE)

21.5 KB Created: 1997-07-21 14:48:34 Authoring application: Microsoft Excel First seen: 2012-06-14
MD5: 6848daca3a4267d9fd8e391273d6dede SHA-1: 234d110e26a345de0a98cf5001fd21b64b7fdeba SHA-256: f9ab97e09808aeec5956f55d37f2794d83fac763f60b0f2945bdc881303c7545
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The file is detected as Win.Trojan.Don-1 by ClamAV. The document body contains a lure message suggesting a social engineering attack to trick the user into enabling macros. No specific family could be identified from the available evidence.

Heuristics 1

  • ClamAV: Win.Trojan.Don-1 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Don-1