Malicious Office (OLE) / .PPT — malware analysis report

Static analysis result for SHA-256 f846499423ca6527…

MALICIOUS

Office (OLE) / .PPT

3.08 MB Created: 2002-12-26 19:51:17 Authoring application: Microsoft PowerPoint
MD5: da62146733de289e2768e1a51c175e17 SHA-1: 5985ce527bef95154ca06c48f803fa79d4fabddb SHA-256: f846499423ca6527b7070390139aaf714ddaa5f167ae80b5c1e6cf29378edf2a
60 Risk Score

Malware Insights

MITRE ATT&CK
T1204.002 Malicious File

The file was detected by ClamAV as Win.Trojan.Agent-232975. While no specific VBA or script content was extracted, the heuristic firing strongly suggests the PowerPoint file contains malicious code intended to execute a trojan payload upon opening.

Heuristics 1

  • ClamAV: Win.Trojan.Agent-232975 critical CLAMAV_DETECTION
    ClamAV detected this file as malware: Win.Trojan.Agent-232975