crismasrl.document.12.05.22.doc
Classification: Malicious
crismasrl.document.12.05.22.doc is a malicious file sample. Linked to Svcready malware. Reported by 1 threat source, last seen 2022-06-07.
Detection summary
- 20 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: SVCREADY (S1064)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| SVCReady | MalwareBazaar Abuse.ch | 2022-06-07 11:22:57 | 2022-06-07 11:22:57 | malicious-activity | S1064 SVCReady |
| Generic.Malware | MalwareBazaar Abuse.ch | 2022-06-07 11:22:57 | 2022-06-07 11:22:57 | malicious-activity |
Sample information
- Filenames
- crismasrl.document.12.05.22.doc
- File type
- application/zip
- MD5
7b92de68804d561ff749512bd35576ac- SHA-1
c8e40ff567a4e44c90b01c73f30d32a7278d359d- SHA-256
50fbe350cc660361b919f5e464da6d6170f35ef497327ae5defc7805e76d5568- First indexed
- 2022-06-07 13:15:17
- Last updated
- 2026-04-26 09:34:37
Antivirus detections
| Engine | Detection |
|---|---|
| Lionic | Trojan.Multi.Generic.4!c |
| Elastic | malicious (high confidence) |
| McAfee | RDN/GenericOLE |
| Alibaba | Trojan:Office/Shelod.7a189059 |
| Cyren | ABRisk.AQWJ-3 |
| ESET-NOD32 | VBA/Agent.AEY |
| TrendMicro-HouseCall | Trojan.O97M.SHELOD.VSNW07F22 |
| Avast | Script:SNH-gen [Trj] |
| Kaspersky | UDS:DangerousObject.Multi.Generic |
| TrendMicro | Trojan.O97M.SHELOD.VSNW07F22 |
| McAfee-GW-Edition | Artemis!Trojan |
| Microsoft | Trojan:Script/Wacatac.B!ml |
| Arcabit | HEUR.VBA.CG.1 |
| ViRobot | DOC.Z.Agent.2662134 |
| ZoneAlarm | HEUR:Trojan.MSOffice.Shelod.gen |
| Acronis | suspicious |
| Rising | Malware.Obfus/[email protected] (VBA) |
| SentinelOne | Static AI - Malicious OPENXML |
| Fortinet | VBA/Agent.DXB!tr |
| AVG | Script:SNH-gen [Trj] |