Malicious Office (OLE) — malware analysis report

Static analysis result for SHA-256 68d74eb9d25ffb39…

MALICIOUS

Office (OLE)

9.5 KB Created: 1996-11-11 17:49:00 Authoring application: Microsoft Word 6.0
MD5: f7fb873303900ec694b1e39bacfe9e8d SHA-1: ef41eba89bed41303a3eedbcb1aa2f3dcb2e6cbf SHA-256: 68d74eb9d25ffb39feb2d87be169ec0bd89ffc09b08f28b68ca24d6b37047bfb
60 Risk Score

Malware Insights

MITRE ATT&CK
T1204 Malicious Link

The file is detected as Doc.Trojan.Wazzu-6 by ClamAV, indicating malicious intent. The document body contains text related to a pool table game, which may serve as a lure. No scripts were extracted, and the document body does not contain explicit instructions, suggesting the malicious functionality is likely embedded within the OLE structure or exploits a vulnerability.

Heuristics 1

  • ClamAV: Doc.Trojan.Wazzu-6 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Doc.Trojan.Wazzu-6