agsolbiatearno-doc-17.06.22.doc
Classification: Malicious
agsolbiatearno-doc-17.06.22.doc is a malicious file sample. Linked to Svcready malware. Reported by 1 threat source, last seen 2022-06-18.
Detection summary
- 44 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: SVCREADY (S1064)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| SVCReady | MalwareBazaar Abuse.ch | 2022-06-18 14:58:37 | 2022-06-18 14:58:37 | malicious-activity | S1064 SVCReady |
| Generic.Malware | MalwareBazaar Abuse.ch | 2022-06-18 14:58:37 | 2022-06-18 14:58:37 | malicious-activity |
Sample information
- Filenames
- agsolbiatearno-doc-17.06.22.doc
- File type
- application/zip
- MD5
07096d79bbb771fdc64afd55defb34a0- SHA-1
74f1acbe3a7ce878218ec895219f832e63e33cf4- SHA-256
f62b3b300e5499695892415e43d7a6e536671a9a9e1f8cf6a5f5b240f0c5084c- First indexed
- 2022-06-18 15:15:04
- Last updated
- 2025-09-16 11:49:03
Antivirus detections
| Engine | Detection |
|---|---|
| Elastic | malicious (high confidence) |
| MicroWorld-eScan | VBA:Amphitryon.1454 |
| Arcabit | VBA:Amphitryon.D5AE |
| ESET-NOD32 | VBA/Agent.AEY |
| Avast | Script:SNH-gen [Trj] |
| Kaspersky | UDS:DangerousObject.Multi.Generic |
| BitDefender | VBA:Amphitryon.1454 |
| Emsisoft | VBA:Amphitryon.1454 (B) |
| DrWeb | Trojan.Siggen18.6702 |
| McAfee-GW-Edition | X97M/Downloader.pf |
| FireEye | VBA:Amphitryon.1454 |
| SentinelOne | Static AI - Malicious OPENXML |
| GData | VBA:Amphitryon.1454 |
| Microsoft | Trojan:O97M/Sadoca.C!ml |
| ZoneAlarm | HEUR:Trojan.MSOffice.Shelod.gen |
| Acronis | suspicious |
| MAX | malware (ai score=80) |
| Rising | Malware.Obfus/[email protected] (VBA) |
| Fortinet | VBA/Agent.DXB!tr |
| AVG | Script:SNH-gen [Trj] |
| AVG | VBA:Obfuscated-AH [Cryp] |
| Ad-Aware | Trojan.GenericKD.39830949 |
| Alibaba | Trojan:Office/Shelod.2b25b116 |
| Avast | VBA:Obfuscated-AH [Cryp] |
| Avira | VBA/Agent.vkkfu |
| BitDefender | Trojan.GenericKD.39830949 |
| CAT-QuickHeal | Ole.Trojan.A5700466 |
| Cynet | Malicious (score: 99) |
| Cyren | PP97M/Dloader.L |
| Emsisoft | Trojan.GenericKD.39830949 (B) |
| FireEye | Trojan.GenericKD.39830949 |
| GData | Trojan.GenericKD.39830949 |
| Kingsoft | Macro.Word.Generic.jm.(kcloud) |
| McAfee | RDN/Generic.dx |
| McAfee-GW-Edition | RDN/Generic.dx |
| MicroWorld-eScan | Trojan.GenericKD.39830949 |
| Microsoft | Trojan:Win32/Skeeyah.A!rfn |
| Symantec | Trojan.Gen.NPE |
| Tencent | Trojan.MsOffice.MacroS.11022256 |
| TrendMicro | Trojan.W97M.SVCREADY.YXCFUZ |
| TrendMicro-HouseCall | Trojan.W97M.SVCREADY.YXCFUZ |
| VIPRE | Trojan.GenericKD.39830949 |
| ViRobot | DOC.Z.Agent.2748384 |
| ZoneAlarm | HEUR:Trojan.Script.Generic |