# Executive Summary **Report ID:** MAR-YYYY-NNNN **Date:** YYYY-MM-DD **Classification:** TLP:______ --- ## Threat Overview | Property | Value | |----------|-------| | Sample | [file name] | | Malware Family | [family name or "Unidentified"] | | Malware Type | [trojan / ransomware / worm / RAT / backdoor / dropper / other] | | Severity | [CRITICAL / HIGH / MEDIUM / LOW] | | Confidence | [HIGH / MEDIUM / LOW] | ## Summary [2-3 sentences: What was analyzed and what was found. Focus on business impact, not technical details.] ## Key Findings 1. **[Finding 1]:** [One sentence describing the most critical finding] 2. **[Finding 2]:** [One sentence describing the next most critical finding] 3. **[Finding 3]:** [One sentence describing additional important finding] ## Impact Assessment - **Affected Systems:** [number and type of affected systems] - **Data at Risk:** [types of data potentially compromised] - **Business Impact:** [operational, financial, reputational impact] ## Recommended Immediate Actions 1. [Most urgent action - containment] 2. [Second most urgent action - blocking] 3. [Third action - detection] 4. [Fourth action - communication] ## Indicators for Blocking | Type | Value | Action | |------|-------|--------| | Domain | `[defanged domain]` | Block at DNS/proxy | | IP | `[defanged IP]` | Block at firewall | | Hash | `[SHA256]` | Block at endpoint | --- *For full technical details, refer to the complete analysis report MAR-YYYY-NNNN.* *TLP:______ | MAR-YYYY-NNNN*