CLBS_0011_1220.docx
Classification: Malicious
CLBS_0011_1220.docx is a malicious file sample. Linked to Ta505 activity. Reported by 1 threat source, last seen 2020-12-11. Detected by 15 antivirus engines.
Detection summary
- 15 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Intrusion sets: TA505 (G0092)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| TA505 | Abuse.ch | 2020-12-11 17:18:59 | 2020-12-11 17:18:59 | malicious-activity | G0092 TA505 |
| Generic.Malware | Abuse.ch | 2020-12-11 17:18:59 | 2020-12-11 17:18:59 | malicious-activity |
Sample information
- Filenames
- CLBS_0011_1220.docx
- File type
- application/vnd.openxmlformats-officedocument.wordprocessingml.document
- MD5
1edefac4bbbbd4659bc2b0546ec16825- SHA-1
7603820ad35012cd406e2866eb9a23e83dc54699- SHA-256
4ab56a1abbf6adc9c6e3e2444bf5807c5269309c8dfddd658d365d0d6f23e6d2- First indexed
- 2020-12-11 18:15:04
- Last updated
- 2025-11-02 22:50:14
Antivirus detections
| Engine | Detection |
|---|---|
| MicroWorld-eScan | Gen:Variant.Razy.805245 |
| FireEye | Gen:Variant.Razy.805245 |
| Arcabit | Trojan.Razy.DC497D |
| BitDefenderTheta | Gen:NN.ZedlaF.34688.yu4@auLsL7m |
| Avast | Win64:Evo-gen [Susp] |
| Kaspersky | HEUR:Trojan.Win32.Generic |
| BitDefender | Gen:Variant.Razy.805245 |
| NANO-Antivirus | Exploit.Xml.CVE-2017-0199.equmby |
| Rising | Trojan.Detplock!8.4A0D (TFE:4:C2a7idCOBrG) |
| McAfee-GW-Edition | Artemis!Trojan |
| Emsisoft | Gen:Variant.Razy.805245 (B) |
| ZoneAlarm | HEUR:Trojan.Win32.Generic |
| GData | Gen:Variant.Razy.805245 |
| MAX | malware (ai score=81) |
| AVG | Win64:Evo-gen [Susp] |