SHA256: | 003837a453ab7dd0dda51804f4208b10009dc33a9a909e9689b82a1b993deea1 |
File name: | copier@xml.apache.org_20160129_084903.doc |
Detection ratio: | 43 / 59 |
Analysis date: | 2018-06-29 00:25:17 UTC ( 7 months, 3 weeks ago ) |
Antivirus | Result | Update |
---|---|---|
Ad-Aware | W97M.Downloader.ARZ | 20180629 |
AegisLab | Macro.Troj.Downloader!c | 20180629 |
AhnLab-V3 | W97M/Downloader | 20180628 |
ALYac | W97M.Downloader.ARZ | 20180629 |
Antiy-AVL | Trojan[Downloader]/MSWord.Agent.zr | 20180629 |
Arcabit | HEUR.VBA.Trojan.d | 20180628 |
Avast | VBA:Downloader-ATB [Trj] | 20180628 |
AVG | VBA:Downloader-ATB [Trj] | 20180628 |
Avira (no cloud) | W2000M/Donoff.BL | 20180628 |
AVware | Trojan-Downloader.W97M.Adnel.b (v) | 20180628 |
Babable | Malware.HighConfidence | 20180406 |
Baidu | VBA.Trojan-Downloader.Agent.ve | 20180628 |
BitDefender | W97M.Downloader.ARZ | 20180628 |
CAT-QuickHeal | W97M.Downloader.30694 | 20180628 |
ClamAV | Doc.Trojan.Dridex-292 | 20180628 |
Comodo | TrojWare.W97M.Agent.~AA | 20180629 |
Cyren | W97M/Downloade | 20180628 |
DrWeb | W97M.DownLoader.858 | 20180628 |
Emsisoft | W97M.Downloader.ARZ (B) | 20180628 |
ESET-NOD32 | VBA/TrojanDownloader.Agent.ARB | 20180628 |
F-Prot | W97M/Downloade | 20180629 |
F-Secure | Trojan:W97M/MaliciousMacro.GEN | 20180629 |
Fortinet | WM/TrojDownloader.742E!tr | 20180628 |
GData | Macro.Trojan-Downloader.Agent.KF | 20180628 |
Kaspersky | Trojan-Downloader.MSWord.Agent.zr | 20180629 |
MAX | malware (ai score=98) | 20180629 |
McAfee | W97M/Downloader.awq | 20180628 |
McAfee-GW-Edition | BehavesLike.Downloader.nr | 20180628 |
Microsoft | TrojanDownloader:O97M/Bartallex | 20180628 |
eScan | W97M.Downloader.ARZ | 20180628 |
NANO-Antivirus | Trojan.Script.MLW.ebktdw | 20180628 |
Panda | O97M/Downloader | 20180628 |
Rising | Trojan.DL-Generic/Macro!1.A4C9 (CLASSIC) | 20180628 |
Sophos AV | Troj/DocDl-AZI | 20180628 |
Symantec | W97M.Downloader | 20180629 |
TACHYON | Suspicious/W97M.Obfus.Gen | 20180629 |
Tencent | OLE.Win32.Macro.703952 | 20180629 |
TrendMicro | W2KM_DRIDEX.YYSQW | 20180629 |
TrendMicro-HouseCall | W2KM_DRIDEX.YYSQW | 20180629 |
VIPRE | Trojan-Downloader.W97M.Adnel.b (v) | 20180629 |
ViRobot | W97M.S.Downloader.93184.D | 20180628 |
ZoneAlarm by Check Point | Trojan-Downloader.MSWord.Agent.zr | 20180629 |
Zoner | Probably W97Downloader | 20180629 |
Alibaba | 20180628 | |
Avast-Mobile | 20180628 | |
Bkav | 20180628 | |
CMC | 20180628 | |
CrowdStrike Falcon (ML) | 20180530 | |
Cybereason | 20180225 | |
Cylance | 20180629 | |
eGambit | 20180629 | |
Endgame | 20180612 | |
Sophos ML | 20180601 | |
Jiangmin | 20180629 | |
K7AntiVirus | 20180628 | |
K7GW | 20180629 | |
Kingsoft | 20180629 | |
Malwarebytes | 20180628 | |
Palo Alto Networks (Known Signatures) | 20180629 | |
Qihoo-360 | 20180629 | |
SentinelOne (Static ML) | 20180618 | |
SUPERAntiSpyware | 20180629 | |
Symantec Mobile Insight | 20180626 | |
TheHacker | 20180628 | |
TotalDefense | 20180628 | |
Trustlook | 20180629 | |
VBA32 | 20180628 | |
Webroot | 20180629 | |
Yandex | 20180628 | |
Zillya | 20180627 |
TrID |
Microsoft Word document (80.0%) Generic OLE2 / Multistream Compound File (20.0%) |
File names |
foo.doc SKM_4050151222162800.bin copier@worldofplayers.de_20160129_084903.doc 25d0042dcfe37434340d371697cd5972 poeV2a5r-g==bigpond.com.au_20160129_084903.doc dc97b9d3e4dd8f48f98113d2af8e26b3 copier@xxx_20160129_084903.bin 51c7b3e21a9b24a8cb83888a1a67121a copier@xml.apache.org_20160129_084903.doc 6a2b46a16048af218a404ca3574b926a copier@ims.fm_20160129_084903.doc copier@fordham.edu_20160129_084903.doc SKM_40501512221628000000000.doc copier@avg.com_20160129_084903.doc f347dd9a8cf8a4393a79fe7b71205f88 copier@trkuhlmann.com_20160129_084903.doc 59f7ab2e0553e383e99d3b9c98c3e34b copier@slovnaft.sk_20160129_084903.doc 924d8e14ccb2604effc455e1a584cb80.doc copier@biopont.com_20160129_084903.doc 9fc7a709e38b47b5f03e1fc5df7ba09c copier@aginsurance.be_20160129_084903.doc copier@swissonline.ch_20160129_084903.doc copier@csm-ua.com_20160129_084903.doc ea4839b02a0ed1497371e05865a36bb2 |
You have not signed in. Only registered users can leave comments, sign in and have a voice!