almabike_document_17.06.2022.doc
Classification: Malicious
almabike_document_17.06.2022.doc is a malicious file sample. Linked to Svcready malware. Reported by 1 threat source, last seen 2022-06-17.
Detection summary
- 25 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: SVCREADY (S1064)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| SVCReady | MalwareBazaar Abuse.ch | 2022-06-17 09:19:35 | 2022-06-17 09:19:35 | malicious-activity | S1064 SVCReady |
Sample information
- Filenames
- almabike_document_17.06.2022.doc
- File type
- application/zip
- MD5
81febabf460639ca1aab064221d42164- SHA-1
de7690f40cac86d1251b21912558c54c8ff2e7d6- SHA-256
f0b819433319a936c3b1e4fe4747fef8081ad827b7d20db5d41856f00c147b18- First indexed
- 2022-06-17 11:15:12
- Last updated
- 2026-03-13 13:33:52
Antivirus detections
| Engine | Detection |
|---|---|
| Elastic | malicious (high confidence) |
| McAfee | RDN/Sadoca |
| Alibaba | Trojan:Office/Shelod.cf0ddd60 |
| Cyren | ABRisk.CTJW-2 |
| ESET-NOD32 | VBA/Agent.AEY |
| TrendMicro-HouseCall | Trojan.W97M.SVCREADY.YXCFQZ |
| Avast | Script:SNH-gen [Trj] |
| Kaspersky | UDS:DangerousObject.Multi.Generic |
| BitDefender | Trojan.GenericKD.49196487 |
| ViRobot | DOC.Z.Agent.8704.QU |
| MicroWorld-eScan | Trojan.GenericKD.49196487 |
| Ad-Aware | Trojan.GenericKD.49196487 |
| DrWeb | Trojan.Siggen18.6702 |
| TrendMicro | Trojan.W97M.SVCREADY.YXCFQZ |
| McAfee-GW-Edition | X97M/Downloader.pf |
| FireEye | Trojan.GenericKD.49196487 |
| GData | Macro.Trojan.Agent.2UCNBG |
| Microsoft | TrojanDownloader:O97M/Obfuse.RV!MTB |
| Arcabit | HEUR.VBA.CG.1 |
| Acronis | suspicious |
| MAX | malware (ai score=86) |
| Rising | Malware.Obfus/[email protected] (VBA) |
| SentinelOne | Static AI - Malicious OPENXML |
| Fortinet | VBA/Agent.DXB!tr |
| AVG | Script:SNH-gen [Trj] |