P002983_37478.xls

Classification: Malicious

P002983_37478.xls is a malicious file sample. Linked to Get2 malware. Reported by 1 threat source, last seen 2020-12-14. Detected by 39 antivirus engines.

Detection summary

  • 39 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 0 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Malware families: GET2 (S0460)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Get2 Abuse.ch 2020-12-14 19:41:04 2020-12-14 19:41:04 malicious-activity S0460 Get2

Sample information

Filenames
P002983_37478.xls
File type
application/vnd.ms-excel
MD5
ea04d9cb82ad3a167217c5b4fee546ad
SHA-1
3ff2574f31eccc3832d95169e1b9bee8ef92935f
SHA-256
656ba41e9e0738e50a42c31c58f17426aa5a928d0945397ec693882835e7582e
First indexed
2020-12-14 21:15:13
Last updated
2025-12-27 08:14:30

Antivirus detections

EngineDetection
ALYacTrojan.Dropper.X97M
AVGSNH:Script [Dropper]
Ad-AwareTrojan.GenericKD.35719448
AhnLab-V3Dropper/MSExcel.Generic
ArcabitTrojan.Generic.D2210918
AvastSNH:Script [Dropper]
AviraW2000M/Agent.7500219
BitDefenderTrojan.GenericKD.35719448
BitDefenderThetaGen:NN.ZedlaF.34700.yu4@a8Rs!kk
CAT-QuickHealOLE.Downloader.39983
ClamAVXls.Packed.Logan-9738662-0
CynetMalicious (score: 85)
CyrenW32/Kryptik.LMYU-5757
DrWebExploit.Siggen3.5302
ESET-NOD32a variant of VBA/TrojanDropper.Agent.BMD
Elasticmalicious (high confidence)
EmsisoftTrojan.GenericKD.35719448 (B)
F-SecureMalware.W2000M/Agent.7500219
FireEyeTrojan.GenericKD.35719448
FortinetVBA/Agent.BMD!tr
GDataGeneric.Trojan.Agent.KIWO6W
GridinsoftTrojan.U.Agent.oa
IkarusTrojan-Dropper.VBA.Agent
KasperskyTrojan.Win32.Agentb.kguf
LionicTrojan.Script.Generic.4!c
MAXmalware (ai score=99)
McAfeeRDN/GenericM
McAfee-GW-EditionBehavesLike.OLE2.Dropper.jb
MicroWorld-eScanTrojan.GenericKD.35719448
MicrosoftTrojanDropper:O97M/GraceWire.ARJ!MTB
Qihoo-360virus.office.qexvmc.1065
RisingDropper.StealthLoader/VBA!1.C75E (CLASSIC:4:C2a7idCOBrG)
SophosMal/Generic-S
SymantecTrojan.Mdropper
TrendMicroTrojan.W97M.GRACEWIRE.SMTH
TrendMicro-HouseCallTrojan.W97M.GRACEWIRE.SMTH
VBA32BScope.Malware-Cryptor.Filecoder
ViRobotXLS.Z.Agent.706560.I
ZoneAlarmHEUR:Trojan.Win32.Generic