Malicious Office (OLE) — malware analysis report

Static analysis result for SHA-256 d9b95083af490ef6…

MALICIOUS

Office (OLE)

492.5 KB Created: 1998-09-21 08:44:00 Authoring application: Microsoft Word for Windows 95
MD5: 0748600c870ebbe674803d5aef4adf0e SHA-1: 2921cff823313e950d8b1f78b463ab37fa798237 SHA-256: d9b95083af490ef69108d56154d82970ef8c5cd5def8f32f3f0c0284fc8dd98a
60 Risk Score

Malware Insights

MITRE ATT&CK
T1204.002 Malicious File

The file is identified as malicious by ClamAV with the signature Win.Trojan.Tm-1. The document structure and metadata, including an old authoring application (Microsoft Word for Windows 95) and a creation date from 1998, suggest it may be an older or obfuscated malicious document. No specific attack pattern or payload could be definitively determined from the limited DOC BODY content.

Heuristics 1

  • ClamAV: Win.Trojan.Tm-1 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Tm-1