Malicious Office (OLE) — malware analysis report

Static analysis result for SHA-256 27bf0f4c63999429…

MALICIOUS

Office (OLE)

17.5 KB Created: 1996-01-03 11:22:00 Authoring application: Microsoft Word for Windows 95
MD5: 1840550344a906c41f0543635f378d33 SHA-1: 1cbf0cb3b40eafe3683991e3e666ba86b309e488 SHA-256: 27bf0f4c63999429222990279b7d669a241c45e1558fca65395604d696225c37
60 Risk Score

Malware Insights

MITRE ATT&CK
T1204.002 Malicious File

The file is an OLE document created with Microsoft Word for Windows 95, a version known to be vulnerable to various exploits. ClamAV detected it as Win.Trojan.Tm-1. The document body contains unusual strings and references to AUTOOPEN, suggesting it may contain malicious macro code designed to exploit a vulnerability.

Heuristics 1

  • ClamAV: Win.Trojan.Tm-1 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Tm-1