Malicious Office (OLE) — malware analysis report

Static analysis result for SHA-256 958339262682f9c0…

MALICIOUS

Office (OLE)

49.5 KB Created: 1997-11-10 14:41:00 Authoring application: Microsoft Word for Windows 95
MD5: fec66002ad8ff6747cbcf00a3eb7a7e1 SHA-1: 1e3de83b8c560a30d92b59c481e812d7169a951e SHA-256: 958339262682f9c0bd1dae4499277635dd5b667759a858ef88083fb792baac0a
60 Risk Score

Malware Insights

MITRE ATT&CK
T1204 Malicious Link

The file is detected as Win.Trojan.Imposter-4 by ClamAV. The document body contains financial summary tables, suggesting a lure related to project costs or grants. An embedded URL was also detected, which is a common method for delivering malicious payloads.

Heuristics 1

  • ClamAV: Win.Trojan.Imposter-4 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Imposter-4