Malicious RTF — malware analysis report

Static analysis result for SHA-256 5a07779f7543eaaf…

MALICIOUS

RTF

70.5 KB Created: 2010-12-06 10:26:00 Authoring application: Microsoft Word 11.0.5604 First seen: 2015-10-02
MD5: d74efe940dcd04f144782ccd01b1260b SHA-1: bd11f538e746048bc41bf23e150bb726ce2a6fbf SHA-256: 5a07779f7543eaafacb9892b358f80d0377a516a25837db64735d6b823556d2e
120 Risk Score

Heuristics 2

  • CVE-2010-3333 — pFragments RTF stack overflow critical CVE exact CVE_2010_3333
    RTF shape property pFragments has an oversized value, matching the CVE-2010-3333 stack-overflow trigger in Microsoft Word 2002/2003.
  • ClamAV: BC.Legacy.Exploit.CVE_2010_3333-5 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: BC.Legacy.Exploit.CVE_2010_3333-5