40fbac7a241bea412734134394ca81c0090698cf0689f2b67c54aa66b7e04670.doc
Classification: Malicious
40fbac7a241bea412734134394ca81c0090698cf0689f2b67c54aa66b7e04670.doc is a malicious file sample. Linked to Invisimole malware.
Detection summary
- 34 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: INVISIMOLE (S0260)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Invisimole | Maltiverse | 2023-03-31 04:13:54 | 2023-04-01 00:17:29 | malicious-activity | S0260 InvisiMole |
| Ghostwriter | Maltiverse | 2023-03-31 04:13:55 | 2023-04-01 00:17:24 | malicious-activity | |
| Generic.Malware | Abuse.ch | 2020-06-10 14:58:15 | 2020-06-10 14:58:15 |
Tags
aptSample information
- Filenames
- 40fbac7a241bea412734134394ca81c0090698cf0689f2b67c54aa66b7e04670.doc
- File type
- application/vnd.openxmlformats-officedocument.wordprocessingml.document
- MD5
34f83ff7b0a1d05aaf8f81c9803a3a02- SHA-1
b44f3d9221d90ddc6863e3323aa2ae7cfa1f4667- SHA-256
40fbac7a241bea412734134394ca81c0090698cf0689f2b67c54aa66b7e04670- First indexed
- 2020-06-11 17:34:09
- Last updated
- 2026-04-11 08:31:35
Antivirus detections
| Engine | Detection |
|---|---|
| MicroWorld-eScan | VB.Chartres.1.Gen |
| FireEye | VB.Chartres.1.Gen |
| AegisLab | Trojan.MSOffice.SDrop.b!c |
| Alibaba | TrojanDownloader:VBA/Obfuscation.A |
| Arcabit | VB.Chartres.1.Gen |
| Cyren | Trojan.RJEJ-2 |
| Symantec | Trojan.Gen.NPE |
| ESET-NOD32 | a variant of VBA/TrojanDropper.Agent.BGC |
| TrendMicro-HouseCall | TROJ_FRS.VSNTFA20 |
| Cynet | Malicious (score: 85) |
| Kaspersky | HEUR:Trojan-Dropper.MSOffice.SDrop.gen |
| BitDefender | VB.Chartres.1.Gen |
| ViRobot | W97M.S.Agent.961561 |
| Rising | Dropper.Agent/VBA!1.C602 (CLASSIC) |
| Ad-Aware | VB.Chartres.1.Gen |
| Emsisoft | VB.Chartres.1.Gen (B) |
| F-Secure | Malware.VBS/Drop.Agent.uzncx |
| DrWeb | W97M.MulDrop.293 |
| TrendMicro | TROJ_FRS.VSNTFA20 |
| McAfee-GW-Edition | BehavesLike.Downloader.dc |
| Ikarus | Trojan-Downloader.VBA.Agent |
| Avira | VBS/Drop.Agent.wmsja |
| Fortinet | VBA/Agent.CF12!tr |
| Endgame | malicious (high confidence) |
| Microsoft | TrojanDropper:O97M/Obfuse.BK!MTB |
| ZoneAlarm | HEUR:Trojan-Dropper.MSOffice.SDrop.gen |
| TACHYON | Suspicious/WOX.Dropper.Gen |
| AhnLab-V3 | Downloader/DOC.Generic |
| ALYac | Trojan.Dropper.MSOffice |
| MAX | malware (ai score=99) |
| Tencent | Heur.Macro.Generic.g.64f53795 |
| SentinelOne | DFI - Malicious OPENXML |
| GData | VB.Chartres.1.Gen |
| Qihoo-360 | Generic/Trojan.Dropper.be6 |