P002983_37478.xls
Classification: Malicious
P002983_37478.xls is a malicious file sample. Linked to Get2 malware. Reported by 1 threat source, last seen 2020-12-14. Detected by 39 antivirus engines.
Detection summary
- 39 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: GET2 (S0460)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Get2 | Abuse.ch | 2020-12-14 19:41:04 | 2020-12-14 19:41:04 | malicious-activity | S0460 Get2 |
Sample information
- Filenames
- P002983_37478.xls
- File type
- application/vnd.ms-excel
- MD5
ea04d9cb82ad3a167217c5b4fee546ad- SHA-1
3ff2574f31eccc3832d95169e1b9bee8ef92935f- SHA-256
656ba41e9e0738e50a42c31c58f17426aa5a928d0945397ec693882835e7582e- First indexed
- 2020-12-14 21:15:13
- Last updated
- 2025-12-27 08:14:30
Antivirus detections
| Engine | Detection |
|---|---|
| ALYac | Trojan.Dropper.X97M |
| AVG | SNH:Script [Dropper] |
| Ad-Aware | Trojan.GenericKD.35719448 |
| AhnLab-V3 | Dropper/MSExcel.Generic |
| Arcabit | Trojan.Generic.D2210918 |
| Avast | SNH:Script [Dropper] |
| Avira | W2000M/Agent.7500219 |
| BitDefender | Trojan.GenericKD.35719448 |
| BitDefenderTheta | Gen:NN.ZedlaF.34700.yu4@a8Rs!kk |
| CAT-QuickHeal | OLE.Downloader.39983 |
| ClamAV | Xls.Packed.Logan-9738662-0 |
| Cynet | Malicious (score: 85) |
| Cyren | W32/Kryptik.LMYU-5757 |
| DrWeb | Exploit.Siggen3.5302 |
| ESET-NOD32 | a variant of VBA/TrojanDropper.Agent.BMD |
| Elastic | malicious (high confidence) |
| Emsisoft | Trojan.GenericKD.35719448 (B) |
| F-Secure | Malware.W2000M/Agent.7500219 |
| FireEye | Trojan.GenericKD.35719448 |
| Fortinet | VBA/Agent.BMD!tr |
| GData | Generic.Trojan.Agent.KIWO6W |
| Gridinsoft | Trojan.U.Agent.oa |
| Ikarus | Trojan-Dropper.VBA.Agent |
| Kaspersky | Trojan.Win32.Agentb.kguf |
| Lionic | Trojan.Script.Generic.4!c |
| MAX | malware (ai score=99) |
| McAfee | RDN/GenericM |
| McAfee-GW-Edition | BehavesLike.OLE2.Dropper.jb |
| MicroWorld-eScan | Trojan.GenericKD.35719448 |
| Microsoft | TrojanDropper:O97M/GraceWire.ARJ!MTB |
| Qihoo-360 | virus.office.qexvmc.1065 |
| Rising | Dropper.StealthLoader/VBA!1.C75E (CLASSIC:4:C2a7idCOBrG) |
| Sophos | Mal/Generic-S |
| Symantec | Trojan.Mdropper |
| TrendMicro | Trojan.W97M.GRACEWIRE.SMTH |
| TrendMicro-HouseCall | Trojan.W97M.GRACEWIRE.SMTH |
| VBA32 | BScope.Malware-Cryptor.Filecoder |
| ViRobot | XLS.Z.Agent.706560.I |
| ZoneAlarm | HEUR:Trojan.Win32.Generic |