This RTF-exploit malware being detected?

See: https://www.joesandbox.com/analysis/884007/0/html

Also see: https://urlhaus.abuse.ch/url/2658925/

31 vendors to detect: https://www.virustotal.com/gui/file/87d74e18791260ee59c94b4c2a095c70695a70013983439d0d899ff3aff88e9d?nocache=1

polonus

This is the most wanted av-evading malcode:
https://blog.checkpoint.com/security/may-2023s-most-wanted-malware-new-version-of-guloader-delivers-encrypted-cloud-based-payloads/

Read: https://any.run/cybersecurity-blog/deobfuscating-guloader/
and here: https://www.malware-traffic-analysis.net/2023/06/09/index.html

polonus