7f946eca44b547e643b57342b756ce1af5b3a0de1ce0b22eb9ac2b4e7e10e521

Classification: Malicious

7f946eca44b547e643b57342b756ce1af5b3a0de1ce0b22eb9ac2b4e7e10e521 is a malicious file sample. Linked to Bitter activity. Detected by 42 antivirus engines.

Detection summary

  • 42 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 0 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Intrusion sets: BITTER (G1002)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
Bitter MalwareBazaar Abuse.ch 2022-05-13 08:17:23 2022-05-13 08:17:23 malicious-activity G1002 BITTER
Generic.Malware MalwareBazaar Abuse.ch 2022-05-13 08:17:23 2022-05-13 08:17:23 malicious-activity

Sample information

Filenames
7f946eca44b547e643b57342b756ce1af5b3a0de1ce0b22eb9ac2b4e7e10e521
File type
application/vnd.openxmlformats-officedocument.presentationml.presentation
MD5
5b039bedad9d067503016eecdf7b0809
SHA-1
69a605808bacd35d8d49b6c263de7f417ee5c0a9
SHA-256
7f946eca44b547e643b57342b756ce1af5b3a0de1ce0b22eb9ac2b4e7e10e521
First indexed
2022-05-13 09:15:04
Last updated
2025-11-12 14:17:05

Antivirus detections

EngineDetection
LionicTrojan.MSOffice.CVE-2018-0802.3!c
MicroWorld-eScanTrojan.Generic.31285846
FireEyeTrojan.Generic.31285846
AlibabaExploit:Office/CVE-2018-0802.c3039e99
SymantecTrojan.Gen.NPE
ESET-NOD32a variant of Generik.LLKKOUN
TrendMicro-HouseCallTROJ_FRS.0NA103ED22
AvastOther:Malware-gen [Trj]
ClamAVOle2.Exploit.ZxxZDownloader-9944376-0
KasperskyHEUR:Exploit.MSOffice.CVE-2018-0802.gen
BitDefenderTrojan.Generic.31285846
TencentOffice.Exploit.Cve-2018-0802.Suxn
Ad-AwareTrojan.Generic.31285846
TACHYONSuspicious/POX.CVE-2018-0798
EmsisoftTrojan.Generic.31285846 (B)
DrWebExploit.CVE-2018-0798.4
TrendMicroTROJ_FRS.0NA103ED22
McAfee-GW-EditionRDN/exploit-ole2.gen
IkarusTrojan.SuspectCRC
ViRobotDOC.Z.CVE-2018-0798.6656.G
ZoneAlarmHEUR:Exploit.MSOffice.CVE-2018-0802.gen
GDataTrojan.Generic.31285846
AhnLab-V3OLE/Cve-2018-0798.Gen
McAfeeRDN/exploit-ole2.gen
MAXmalware (ai score=85)
AVGOther:Malware-gen [Trj]
ALYacExploit.CVE-2018-0802
Antiy-AVLTrojan[Exploit]/MSOffice.CVE-2018-0802
ArcabitTrojan.Generic.D2EBF51F [many]
BitDefenderTrojan.GenericKD.49018143
CTXpptx.exploit-kit.office
EmsisoftTrojan.GenericKD.49018143 (B)
GDataTrojan.GenericKD.39675675
GoogleDetected
IkarusExploit.CVE-2018-0798
LionicTrojan.MSPPoint.Office.3!c
MicroWorld-eScanTrojan.GenericKD.39675675
SangforExploit.Office/CVE-2018-0798.APT-BITTER.ulgcyg
TencentOffice.Exploit.Cve-2018-0802.Cujl
VIPRETrojan.GenericKD.49018143
VaristABTrojan.ZQKP-
alibabacloudExploit:MSOffice/ZxxZDownloader.9944376