Malicious Office (OLE) — malware analysis report

Static analysis result for SHA-256 208c41a4d3882904…

MALICIOUS

Office (OLE)

371.5 KB Created: 1998-06-30 00:21:00 Authoring application: Microsoft Word for Windows 95
MD5: 16ffaea5c7369d7734e10fdc7e1a8826 SHA-1: cacdda55ce3fb08b823e9eb44266a2d06f326763 SHA-256: 208c41a4d388290425392318bdb16a6d0e870e712e5bb53b6f068f927adb7dbb
60 Risk Score

Malware Insights

MITRE ATT&CK
T1204.002 Malicious File

The file is an OLE document created with Microsoft Word 95, a version known to be vulnerable to various exploits. The CLAMAV_DETECTION heuristic firing for 'Win.Trojan.Tm-1' strongly suggests malicious intent. The document body contains unusual strings and what appear to be internal Office document structures, but no clear user-facing lure or script content was extracted to further detail the attack. The confidence is moderate due to the lack of specific exploit details or script analysis.

Heuristics 1

  • ClamAV: Win.Trojan.Tm-1 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Tm-1