Malicious Office (OLE) — malware analysis report

Static analysis result for SHA-256 1239a37ee5fee12d…

MALICIOUS

Office (OLE)

684.0 KB Created: 1998-07-01 03:45:00 Authoring application: Microsoft Word for Windows 95
MD5: 0f8c3f96aa0788e6e5c5aa79d649536d SHA-1: eb9b762f1a36e4a642ddef0b4c9c9e92e8f8897f SHA-256: 1239a37ee5fee12db84b0c093010d2fffbd92b1b6fa6e8c40134087e72a362e9
60 Risk Score

Malware Insights

The file is an OLE document detected by ClamAV as Win.Trojan.Tm-1. The document body contains highly obfuscated and seemingly random strings, which is characteristic of malware attempting to hide its true functionality. No specific VBA or script content was extracted, but the heuristic detection and the nature of the document body suggest it is a downloader or dropper for a malicious payload.

Heuristics 1

  • ClamAV: Win.Trojan.Tm-1 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Tm-1