Win.Trojan.Baluade-1 — Office (OLE) malware analysis

Static analysis result for SHA-256 f2d20354750b206e…

MALICIOUS

Office (OLE)

11.5 KB Created: 2027-12-31 00:00:00 Authoring application: Microsoft Word 6.0 First seen: 2012-06-14
MD5: a5c1d432437022325aa8300b62878a21 SHA-1: d6a3a2b9938bcc5fecee3a861ecf543bc5d02d39 SHA-256: f2d20354750b206e9dedc05dec753668bcbfac45622984b52052d7638bf39e01
60 Risk Score

Malware Insights

Win.Trojan.Baluade-1 · confidence 75%

MITRE ATT&CK
T1566.001 Spearphishing Attachment

The file was detected by ClamAV as Win.Trojan.Baluade-1, indicating a known malicious trojan. The document body contains seemingly innocuous text related to file saving and printer drivers, which could be a lure to disguise the malicious intent. Without further script or URL evidence, the exact execution flow is unclear, but the detection strongly suggests a malicious payload.

Heuristics 1

  • ClamAV: Win.Trojan.Baluade-1 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Baluade-1