varacalli-file-13.06.2022.doc
Classification: Malicious
varacalli-file-13.06.2022.doc is a malicious file sample. Linked to Svcready malware. Reported by 1 threat source, last seen 2022-06-14.
Detection summary
- 30 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: SVCREADY (S1064)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| SVCReady | MalwareBazaar Abuse.ch | 2022-06-14 16:16:17 | 2022-06-14 16:16:17 | malicious-activity | S1064 SVCReady |
| Generic.Malware | MalwareBazaar Abuse.ch | 2022-06-14 16:16:17 | 2022-06-14 16:16:17 | malicious-activity |
Sample information
- Filenames
- varacalli-file-13.06.2022.doc
- File type
- application/zip
- MD5
f2dbc8b51a88d4c6631042bb0f62df74- SHA-1
b9769be211e29dec9c7a03c0d255d2abbee9f73c- SHA-256
9894b3d3ab4a2f3303c0aea040cae4c50e5d9711fd5cb24b9c2500f5be9a23fe- First indexed
- 2022-06-14 17:15:05
- Last updated
- 2025-09-23 21:15:53
Antivirus detections
| Engine | Detection |
|---|---|
| Elastic | malicious (high confidence) |
| MicroWorld-eScan | VBA:Amphitryon.3574 |
| FireEye | VBA:Amphitryon.3574 |
| BitDefender | VBA:Amphitryon.3574 |
| ESET-NOD32 | VBA/Agent.AEY |
| ClamAV | Doc.Downloader.SVCReady-81fe832081fe7c7c-9951593-0 |
| Kaspersky | HEUR:Trojan.MSOffice.Shelod.gen |
| Rising | Malware.Obfus/[email protected] (VBA) |
| DrWeb | Trojan.Siggen18.6702 |
| McAfee-GW-Edition | BehavesLike.Bad-VBA.tc |
| Emsisoft | VBA:Amphitryon.3574 (B) |
| MAX | malware (ai score=81) |
| Microsoft | Trojan:O97M/Sadoca.C!ml |
| Arcabit | VBA:Amphitryon.DDF6 |
| GData | VBA:Amphitryon.3574 |
| Acronis | suspicious |
| SentinelOne | Static AI - Malicious OPENXML |
| Fortinet | VBA/Amphitryon.3574!tr |
| Lionic | Trojan.MSOffice.Shelod.4!c |
| Cynet | Malicious (score: 99) |
| McAfee | RDN/Sadoca |
| Alibaba | Trojan:Office/Shelod.231f047e |
| Cyren | ABRisk.PMQP-6 |
| Avast | Script:SNH-gen [Trj] |
| Kaspersky | UDS:DangerousObject.Multi.Generic |
| Avira | VBA/Agent.hzasv |
| ViRobot | DOC.Z.Agent.1986468 |
| ZoneAlarm | HEUR:Trojan.MSOffice.Shelod.gen |
| ALYac | Trojan.Downloader.DOC.Gen |
| AVG | Script:SNH-gen [Trj] |