pastagentile,file,08.06.22.doc
Classification: Malicious
pastagentile,file,08.06.22.doc is a malicious file sample. Linked to Svcready malware. Reported by 1 threat source, last seen 2022-06-10.
Detection summary
- 17 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: SVCREADY (S1064)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| SVCReady | MalwareBazaar Abuse.ch | 2022-06-10 21:37:57 | 2022-06-10 21:37:57 | malicious-activity | S1064 SVCReady |
| Generic.Malware | MalwareBazaar Abuse.ch | 2022-06-10 21:37:57 | 2022-06-10 21:37:57 | malicious-activity |
Sample information
- Filenames
- pastagentile,file,08.06.22.doc
- File type
- application/zip
- MD5
a7adb05e8dbcb9469ab08003725d0988- SHA-1
351e644d6ae2724ba933706e6003a1d9609b2f25- SHA-256
3a64c86b54f124af888876b5b8bd372e82334f31664917b3e9c754c9af3a4d69- First indexed
- 2022-06-10 22:15:03
- Last updated
- 2025-10-03 17:16:08
Antivirus detections
| Engine | Detection |
|---|---|
| Elastic | malicious (high confidence) |
| MicroWorld-eScan | VBA:Amphitryon.1454 |
| ESET-NOD32 | VBA/Agent.AEY |
| Kaspersky | UDS:DangerousObject.Multi.Generic |
| BitDefender | VBA:Amphitryon.1454 |
| Rising | Malware.Obfus/[email protected] (VBA) |
| McAfee-GW-Edition | BehavesLike.Bad-VBA.tc |
| FireEye | VBA:Amphitryon.1454 |
| Emsisoft | VBA:Amphitryon.1454 (B) |
| SentinelOne | Static AI - Malicious OPENXML |
| GData | VBA:Amphitryon.1454 |
| Microsoft | Trojan:Script/Wacatac.B!ml |
| Arcabit | VBA:Amphitryon.D5AE |
| ZoneAlarm | HEUR:Trojan.MSOffice.Shelod.gen |
| Acronis | suspicious |
| MAX | malware (ai score=85) |
| Fortinet | VBA/Amphitryon.3574!tr |