fisem,document,12.05.2022.doc

Classification: Malicious

fisem,document,12.05.2022.doc is a malicious file sample. Linked to Svcready malware. Reported by 1 threat source, last seen 2022-06-07.

Detection summary

  • 27 antivirus detections
  • 0 IDS alerts
  • 0 processes observed
  • 0 contacted hosts
  • 0 DNS requests

MITRE ATT&CK associations

Malware families: SVCREADY (S1064)

Blacklist sightings

Description Source First seen Last seen Labels MITRE ATT&CK
SVCReady MalwareBazaar Abuse.ch 2022-06-07 11:22:59 2022-06-07 11:22:59 malicious-activity S1064 SVCReady
Generic.Malware MalwareBazaar Abuse.ch 2022-06-07 11:22:59 2022-06-07 11:22:59 malicious-activity

Sample information

Filenames
fisem,document,12.05.2022.doc
File type
application/zip
MD5
16720d1f52e77783c28645a02640756c
SHA-1
cbb8cf94ffd1369e885652c94d7cb1696875f90b
SHA-256
fcb325d21d1100269731553015d6d0f85143dae2bfa6cbaf49ac6da29f1f732e
First indexed
2022-06-07 13:15:17
Last updated
2025-11-09 11:46:52

Antivirus detections

EngineDetection
LionicTrojan.MSOffice.Shelod.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.50282190
FireEyeTrojan.GenericKD.50282190
ALYacTrojan.Downloader.DOC.Gen
AlibabaTrojanDownloader:VBA/Obfuscation.A
CyrenPP97M/Dloader.M
ESET-NOD32VBA/Agent.AEY
AvastScript:SNH-gen [Trj]
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderTrojan.GenericKD.50282190
TencentTrojan.MsOffice.MacroS.11020692
Ad-AwareTrojan.GenericKD.50282190
McAfee-GW-EditionRDN/Sadoca
EmsisoftTrojan.GenericKD.50282190 (B)
AviraVBA/Agent.mhwye
MicrosoftTrojan:Script/Wacatac.B!ml
ViRobotDOC.Z.Agent.2661935
GDataTrojan.GenericKD.50282190
CynetMalicious (score: 99)
AhnLab-V3Dropper/MSOffice.Generic
Acronissuspicious
McAfeeRDN/Sadoca
RisingMalware.Obfus/[email protected] (VBA)
SentinelOneStatic AI - Malicious OPENXML
FortinetVBA/Agent.DXB!tr
AVGScript:SNH-gen [Trj]