Malicious Office (OLE) — malware analysis report

Static analysis result for SHA-256 c8d71df19cbe58f1…

MALICIOUS

Office (OLE)

648.5 KB Created: 1998-04-16 03:00:00 Authoring application: Microsoft Word for Windows 95
MD5: 0d83820f8d4279bf4f869a94ba15ca49 SHA-1: 78b350a91d1b438d90b85246d5a1c675da69bf88 SHA-256: c8d71df19cbe58f109bccb414283df3fe7136da99f9d8c1f7ede64fd18e39702
60 Risk Score

Malware Insights

MITRE ATT&CK
T1204.002 Malicious File

The file is identified as malicious by ClamAV with the signature Win.Trojan.Tm-1. The file's metadata indicates it is a Microsoft Word 95 document, a version known to be vulnerable to various exploits. The document body contains unusual strings that do not form coherent text, suggesting it may be part of an exploit or obfuscated payload. No specific IOCs were extracted, and the family is unknown.

Heuristics 1

  • ClamAV: Win.Trojan.Tm-1 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Tm-1