Malicious Office (OLE) / .EXE — malware analysis report

Static analysis result for SHA-256 b4bc3ff94ec38800…

MALICIOUS

Office (OLE) / .EXE

10.0 KB Created: 1998-12-26 22:06:00 Authoring application: Microsoft Word for Windows 95
MD5: 61f92f7610e86f53b0bdee49916a1f15 SHA-1: 449ad611481c5f229c543c33955abcd78d58ffb0 SHA-256: b4bc3ff94ec38800e6d50cae119246d52fe16791339534eee51ea62ac285c1a8
60 Risk Score

Malware Insights

MITRE ATT&CK
T1204.002 Malicious File

The file is identified as malicious by ClamAV with the signature Doc.Trojan.MinSize-1. The document body contains strings that appear to be related to document templates and author information, but lack any clear user-facing content. The file type is an OLE executable, suggesting it may be a packed or disguised executable. The SHA256 hash is included as a primary indicator.

Heuristics 1

  • ClamAV: Doc.Trojan.MinSize-1 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Doc.Trojan.MinSize-1