Win.Trojan.Stryx-2 — Office (OLE) malware analysis

Static analysis result for SHA-256 1100335c207eff03…

MALICIOUS

Office (OLE)

39.0 KB Created: 1996-10-09 18:41:00 Authoring application: Microsoft Word for Windows 95 First seen: 2012-06-14
MD5: 122d74a73ebb502868c60c2117270d75 SHA-1: 08159e745a167dcdf530fe0360c8d2a1c26a4ad6 SHA-256: 1100335c207eff03de9a679c1e1d6bdc6d177cef08fcbdef21222530dcd17de7
60 Risk Score

Malware Insights

Win.Trojan.Stryx-2 · confidence 90%

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The file is identified as malicious by ClamAV with the signature Win.Trojan.Stryx-2. The document body contains seemingly random text and references to 'Stryx1' and 'Stryx2', which are likely related to the malware family. The document's structure and content suggest it is designed to be opened, potentially as part of a phishing campaign.

Heuristics 1

  • ClamAV: Win.Trojan.Stryx-2 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Stryx-2