StatsFirst seenMay 2023Last seenSeptember 2026Alert name variantsAlert NameEngineWin64.Trojan.BazarLoadATP Sandbox Adv. HeuristicsRelated blogsMicrosoft’s Macro Reversal Invites a Resurgence of Office MalwareJuly 8, 2022·1 min readMicrosoft Office: VBA Blocked By Default in Files From the InternetFebruary 24, 2022·7 min readInfected PowerPoint Files Using Cloud Services to Deliver Multiple MalwareJanuary 24, 2022·7 min readMalicious Office Documents: Multiple Ways to Deliver PayloadsNovember 19, 2021·4 min readCloud Threats Memo: Scary Examples of Weaponizing Google DriveNovember 18, 2021·3 min readCloud Threats Memo: BazarLoader Exploiting Popular Cloud ServicesOctober 25, 2021·2 min readSquirrelWaffle: New Malware Loader Delivering Cobalt Strike and QakBotOctober 7, 2021·6 min readBazarLoader: Using LoLBins through Office Documents to Deliver PayloadsSeptember 22, 2021·4 min readCloud Threats Memo: Malicious Campaigns Taking Advantage of Well-known Collaboration AppsApril 20, 2021·1 min readRelated familiesBazarWarzoneRATDridexRyukTrickBot
Infected PowerPoint Files Using Cloud Services to Deliver Multiple MalwareJanuary 24, 2022·7 min read
Cloud Threats Memo: Malicious Campaigns Taking Advantage of Well-known Collaboration AppsApril 20, 2021·1 min read