Malicious Office (OLE) / .DOC — malware analysis report

Static analysis result for SHA-256 fb356c48ffceb388…

MALICIOUS

Office (OLE) / .DOC

46.0 KB Created: 1998-04-02 02:51:00 Authoring application: Microsoft Word for Windows 95
MD5: a223345f07c240906d323646e6ddf61e SHA-1: e9fa761c2cebcc9c789905c920101b638a38a05f SHA-256: fb356c48ffceb388a6e22e98958feff785513b8f785c8315faefe60b277cfc90
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The file is detected as Win.Trojan.Cap-1 by ClamAV. The document body presents itself as an advancement update for scouts, a common social engineering lure. While no scripts were extracted, the document structure and heuristic detection suggest a malicious intent, likely to trick the user into enabling macros or opening a malicious attachment.

Heuristics 1

  • ClamAV: Win.Trojan.Cap-1 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Cap-1