Malicious RTF — malware analysis report

Static analysis result for SHA-256 abf1c299bd06e837…

MALICIOUS

RTF

100.8 KB First seen: 2026-06-11
MD5: 941852e98cb2fb8d98a2860ff76c8afa SHA-1: b76a9b99d30efbedb17e6f30978f88b3b480e256 SHA-256: abf1c299bd06e837aec88315a8de764e0a149dc0a938053e61bd26f9e3aac635
120 Risk Score

Heuristics 2

  • CVE-2010-3333 — pFragments RTF stack overflow critical CVE exact CVE_2010_3333
    RTF shape property pFragments has an oversized value, matching the CVE-2010-3333 stack-overflow trigger in Microsoft Word 2002/2003.
  • ClamAV: BC.Legacy.Exploit.CVE_2010_3333-5 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: BC.Legacy.Exploit.CVE_2010_3333-5