particulars_09.20.2021.doc
Classification: Malicious
particulars_09.20.2021.doc is a malicious file sample. Linked to Bazar malware. Reported by 1 threat source, last seen 2021-09-28.
Detection summary
- 13 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: BAZAR (S0534)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Generic.Malware | Abuse.ch | 2021-09-28 09:34:05 | 2021-09-28 09:34:05 | malicious-activity | |
| BazaLoader | Abuse.ch | 2021-09-28 09:34:05 | 2021-09-28 09:34:05 | malicious-activity | S0534 Bazar |
Sample information
- Filenames
- particulars_09.20.2021.doc
- File type
- application/msword
- MD5
3684bd83ddf92d36790ed45c8b1505a0- SHA-1
8457f558dc9b3b43bf80b750f759147a16bc1e32- SHA-256
d583920b6977cd34ade938a2ed3b568c7caaf5be2b48874be8c090d81ad23032- First indexed
- 2021-09-28 11:15:09
- Last updated
- 2026-06-15 21:07:39
Antivirus detections
| Engine | Detection |
|---|---|
| Elastic | malicious (moderate confidence) |
| Symantec | ISB.Downloader!gen148 |
| ESET-NOD32 | a variant of VBA/TrojanDropper.Agent.CEU |
| Kaspersky | HEUR:Trojan.MSOffice.SAgent.gen |
| NANO-Antivirus | Trojan.Ole2.Vbs-heuristic.druvzi |
| McAfee-GW-Edition | BehavesLike.OLE2.Downloader.cg |
| Ikarus | Trojan-Downloader.VBA.Agent |
| Microsoft | Trojan:Script/Woreflint.A!cl |
| Arcabit | HEUR.VBA.Trojan.d |
| ZoneAlarm | HEUR:Trojan.MSOffice.SAgent.gen |
| TACHYON | Suspicious/W97M.Obfus.Gen.8 |
| McAfee | X97M/Downloader.kt |
| SentinelOne | Static AI - Malicious OLE |