Malicious Office (OLE) / .XLS — malware analysis report

Static analysis result for SHA-256 eb1dfac804212dbd…

MALICIOUS

Office (OLE) / .XLS

407.5 KB Created: 2007-06-12 12:57:37 Authoring application: Microsoft Excel
MD5: 854226cb25a9cc7f8d614bf66c81cf91 SHA-1: d3e0baf43104ca302e46f41195d39b7756e0b91e SHA-256: eb1dfac804212dbd5f6f9d4fadf66ab7267589a462085ef8f00c2d2ad4cad6a8
60 Risk Score

Malware Insights

MITRE ATT&CK
T1204 Malicious Link T1204.002 Malicious Link: Malicious File

The file is identified as malicious by ClamAV with the signature Win.Exploit.CVE_2008_0081-1, indicating it exploits a vulnerability in Microsoft Excel. The document body contains heavily obfuscated and truncated data, making it difficult to determine the exact nature of the payload or delivery mechanism beyond the exploit itself. No scripts or specific URLs were extracted.

Heuristics 1

  • ClamAV: Win.Exploit.CVE_2008_0081-1 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Exploit.CVE_2008_0081-1