Malicious Office (OLE) — malware analysis report

Static analysis result for SHA-256 dba3992f5f89e7b8…

MALICIOUS

Office (OLE)

27.0 KB Created: 1998-02-12 17:58:36 Authoring application: Microsoft Excel First seen: 2012-06-14
MD5: 93bcbaf833b7dcef01e947a900d46a5f SHA-1: 2d970e643e2d72dc2dffc70a1675e8096094b27b SHA-256: dba3992f5f89e7b8e32d140444aa118c4765aa8e4f475a95a362c6d88562d9c9
60 Risk Score

Malware Insights

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The file is identified as malicious by ClamAV with the signature Xls.Trojan.Trasher-1, indicating it is a known Excel-based threat. The document body contains only garbled text, suggesting it is not intended for user interaction but rather to host malicious content or exploit. Given its nature as an Office file, it is likely delivered via spearphishing.

Heuristics 1

  • ClamAV: Xls.Trojan.Trasher-1 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Xls.Trojan.Trasher-1