Malicious Office (OLE) — malware analysis report

Static analysis result for SHA-256 e78bda81bb3fc9a0…

MALICIOUS

Office (OLE)

8.5 KB First seen: 2012-06-14
MD5: 3efa3f1659cc77d6f32b8ac83284c6bd SHA-1: c86920f3d40d0231940b5db8f8fc15f8c108af67 SHA-256: e78bda81bb3fc9a0877a756df5207d2e5a9cd4dd8ef783755e368623f4df0618
60 Risk Score

Malware Insights

MITRE ATT&CK
T1203 Exploitation for Client Execution

The file was detected by ClamAV as Legacy.Trojan.Agent-230, indicating it is a known malicious artifact. The lack of document body or script content suggests the maliciousness relies on an embedded exploit rather than social engineering. The exploit likely targets a client execution vulnerability.

Heuristics 1

  • ClamAV: Legacy.Trojan.Agent-230 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Legacy.Trojan.Agent-230