Malicious Office (OLE) / .PPT — malware analysis report

Static analysis result for SHA-256 2a3833cfb02f8fc9…

MALICIOUS

Office (OLE) / .PPT

228.5 KB Created: 2003-02-05 11:23:42 Authoring application: Microsoft PowerPoint
MD5: 2707cc4a2daecda929ffea5d8836e2e5 SHA-1: a65be08e8f28d8b068d2dd69cc1925199ff25d92 SHA-256: 2a3833cfb02f8fc96723f4a0bd2dacd200d025608fd7a63c3e34176ce15fd801
60 Risk Score

Malware Insights

MITRE ATT&CK
T1204.002 Malicious File

The file is identified as malicious by ClamAV with the signature Win.Joke.Brod-1. While no specific VBA scripts or exploitable content were extracted, the file's nature as a PowerPoint presentation suggests a social engineering attack vector. The document body contains generic placeholder text, offering no further clues about the specific lure.

Heuristics 1

  • ClamAV: Win.Joke.Brod-1 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Joke.Brod-1