fisem,document,12.05.2022.doc
Classification: Malicious
fisem,document,12.05.2022.doc is a malicious file sample. Linked to Svcready malware. Reported by 1 threat source, last seen 2022-06-07.
Detection summary
- 27 antivirus detections
- 0 IDS alerts
- 0 processes observed
- 0 contacted hosts
- 0 DNS requests
MITRE ATT&CK associations
Malware families: SVCREADY (S1064)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| SVCReady | MalwareBazaar Abuse.ch | 2022-06-07 11:22:59 | 2022-06-07 11:22:59 | malicious-activity | S1064 SVCReady |
| Generic.Malware | MalwareBazaar Abuse.ch | 2022-06-07 11:22:59 | 2022-06-07 11:22:59 | malicious-activity |
Sample information
- Filenames
- fisem,document,12.05.2022.doc
- File type
- application/zip
- MD5
16720d1f52e77783c28645a02640756c- SHA-1
cbb8cf94ffd1369e885652c94d7cb1696875f90b- SHA-256
fcb325d21d1100269731553015d6d0f85143dae2bfa6cbaf49ac6da29f1f732e- First indexed
- 2022-06-07 13:15:17
- Last updated
- 2025-11-09 11:46:52
Antivirus detections
| Engine | Detection |
|---|---|
| Lionic | Trojan.MSOffice.Shelod.4!c |
| Elastic | malicious (high confidence) |
| MicroWorld-eScan | Trojan.GenericKD.50282190 |
| FireEye | Trojan.GenericKD.50282190 |
| ALYac | Trojan.Downloader.DOC.Gen |
| Alibaba | TrojanDownloader:VBA/Obfuscation.A |
| Cyren | PP97M/Dloader.M |
| ESET-NOD32 | VBA/Agent.AEY |
| Avast | Script:SNH-gen [Trj] |
| Kaspersky | UDS:DangerousObject.Multi.Generic |
| BitDefender | Trojan.GenericKD.50282190 |
| Tencent | Trojan.MsOffice.MacroS.11020692 |
| Ad-Aware | Trojan.GenericKD.50282190 |
| McAfee-GW-Edition | RDN/Sadoca |
| Emsisoft | Trojan.GenericKD.50282190 (B) |
| Avira | VBA/Agent.mhwye |
| Microsoft | Trojan:Script/Wacatac.B!ml |
| ViRobot | DOC.Z.Agent.2661935 |
| GData | Trojan.GenericKD.50282190 |
| Cynet | Malicious (score: 99) |
| AhnLab-V3 | Dropper/MSOffice.Generic |
| Acronis | suspicious |
| McAfee | RDN/Sadoca |
| Rising | Malware.Obfus/[email protected] (VBA) |
| SentinelOne | Static AI - Malicious OPENXML |
| Fortinet | VBA/Agent.DXB!tr |
| AVG | Script:SNH-gen [Trj] |