Malicious Office (OLE) / .PPT — malware analysis report

Static analysis result for SHA-256 dfb4661a13a9c1bb…

MALICIOUS

Office (OLE) / .PPT

940.0 KB Created: 2009-10-07 05:33:46 Authoring application: Microsoft Office PowerPoint First seen: 2026-06-13
MD5: 7169d21a40a68cc06803a152b73fb1c8 SHA-1: 4ba10061cf0d24ffc8ea17c97bae71f9ee2648b1 SHA-256: dfb4661a13a9c1bb89d3ce26759e0b1c3910d77aadda67c0b3ddca14cb030b96
62 Risk Score

Heuristics 2

  • ClamAV: Win.Worm.AutorunLink-6547264-0 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Worm.AutorunLink-6547264-0
  • Embedded URL info EMBEDDED_URL
    One or more URLs were extracted from the document. The URL itself is not a detection — see the per-URL labels for which channel (macro, JS, link annotation, document body, ...) reached each URL.
    URL http://schemas.openxmlformats.org/drawingml/2006/main In document text (OLE body)