Malicious Office (OLE) — malware analysis report

Static analysis result for SHA-256 b2b76614d3217b57…

MALICIOUS

Office (OLE)

18.5 KB Created: 1999-08-04 05:59:44 Authoring application: Microsoft PowerPoint First seen: 2012-06-14
MD5: 24508b95683cb7c3a9c89aa1709c0ee0 SHA-1: d01e35f2c848e724367d7a9033649d26739bf3c0 SHA-256: b2b76614d3217b575f45d83f853885219dafbf85f09ba429752e2096a48321c9
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The file is identified as malicious by ClamAV with the signature Win.Trojan.PP97M-9. The document body contains placeholder text and copyright information, suggesting a lure to disguise malicious content. No scripts were extracted, and the primary indicator is the heuristic detection.

Heuristics 1

  • ClamAV: Win.Trojan.PP97M-9 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.PP97M-9