Malicious Office (OLE) / .PPT — malware analysis report

Static analysis result for SHA-256 6272cb364721a963…

MALICIOUS

Office (OLE) / .PPT

616.5 KB Created: 1601-01-01 00:00:00 Authoring application: Microsoft PowerPoint
MD5: 7d28ee61ce1a167e9027a4d968f3384a SHA-1: b6c936a820fb466f0073996b48291e5ff7ebcb14 SHA-256: 6272cb364721a96380b5fbe5e53689effb44ee8f05093c18a57fb683333c773f
60 Risk Score

Malware Insights

MITRE ATT&CK
T1203 Exploitation for Client Execution

The file is identified as a malicious PowerPoint presentation by ClamAV, specifically flagged as Win.Trojan.Exploit-110. This indicates it likely contains an exploit targeting a vulnerability within PowerPoint to execute malicious code. The presence of the exploit suggests an attempt to gain initial execution on the victim's system.

Heuristics 1

  • ClamAV: Win.Trojan.Exploit-110 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Exploit-110