Malicious Office (OLE) / .EXE — malware analysis report

Static analysis result for SHA-256 c2d7693a06c944d1…

MALICIOUS

Office (OLE) / .EXE

9.5 KB Created: 1998-12-26 18:09:00 Authoring application: Microsoft Word for Windows 95
MD5: a84d758513bf0d0e1536e35aca0daf9f SHA-1: 765f1223e7b43ae04c516dd16fcc931caf9fed31 SHA-256: c2d7693a06c944d1235256e18687578ff04ae53fe6cd551592b0a597e0189110
60 Risk Score

Malware Insights

MITRE ATT&CK
T1204.002 Malicious File

The file is detected as a Trojan by ClamAV, indicating malicious intent. The document body contains strings related to Microsoft Word templates and potentially embedded code, suggesting an attempt to exploit a vulnerability within the application upon opening. No specific IOCs were extracted, but the heuristic firing strongly suggests a malicious document.

Heuristics 1

  • ClamAV: Doc.Trojan.MinSize-1 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Doc.Trojan.MinSize-1