Win.Trojan.Ramboo-1 — Office (OLE) malware analysis

Static analysis result for SHA-256 4e33d9c1686c5d8c…

MALICIOUS

Office (OLE)

17.5 KB First seen: 2012-06-14
MD5: 86a113c647c979d45bb322d80208b843 SHA-1: 88408f087163aa267110d277e9194b2b2e5c0d53 SHA-256: 4e33d9c1686c5d8c14e1a1c656ff1898da5f788854f90ec423fa2ee26c29a742
60 Risk Score

Malware Insights

Win.Trojan.Ramboo-1 · confidence 95%

MITRE ATT&CK
T1204.002 Malicious File

The file is identified by ClamAV as Win.Trojan.Ramboo-1, indicating a known malicious trojan. The document body contains text that appears to be obfuscated or corrupted, likely to mask the malicious intent. No specific IOCs were extracted beyond the malware family name.

Heuristics 1

  • ClamAV: Win.Trojan.Ramboo-1 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Ramboo-1