Malware December |
Malware November |
Malware October |
Malware September |
Malware August |
Malware July |
Malware June |
Malware May |
Malware April |
Malware March |
Malware February |
Malware January |
Strike ID | Malware | Platform | Info | MD5 | External References |
---|---|---|---|---|---|
M16-o5o01 | Locky_dropper_d2e4984e | Mixed | This strike sends a malware sample detected by McAfee as W97M/Downloader.ayh, Symantec as W97M.Downloader, Kaspersky as Trojan-Downloader.MSWord.Agent.aau, ESET-NOD32 as VBA/TrojanDownloader.Agent.ASP, BitDefender as W97M.Downloader.AXJ. | d2e4984e6ee44a756abfa59f775cc12a | 674d9b8dc93e0e75ac4561df6ee388c65e2c56e7 d2e4984e6ee44a756abfa59f775cc12a 5ad06eda999a9f2f28c2057ba40bd2f7b6a7cb2e1915104b2724753649e97de5 |
M16-jg801 | Dropper_163bcafa | Mixed | This strike sends a malware sample detected by McAfee as W97M/Downloader.bkn, Symantec as Trojan.Mdropper, ESET-NOD32 as VBA/TrojanDropper.Agent.MP. | 163bcafa5b24717417828e0f002ada5e | 02ed76ade541c4bab50172b4a041289f7bca892a 163bcafa5b24717417828e0f002ada5e a94c270cf628545811d23971d0870d542c24bceef85c0d25f35bf4daf248dbbb |
M16-1ag01 | Remsec_234e22d3 | Windows | This strike sends a malware sample detected by McAfee as W32/Remsec-APT!234E22D3B7BB, Symantec as Backdoor.Remsec, Kaspersky as HEUR:Trojan.Multi.Remsec.gen, ESET-NOD32 as a variant of Win32/Cremes.C, BitDefender as Gen:Variant.Remsec.1. | 234e22d3b7bba6c0891de0a19b79d7ea | 9214239dea04dec5f33fd62602afde720b71d2d2 234e22d3b7bba6c0891de0a19b79d7ea 30a824155603c2e9d8bfd3adab8660e826d7e0681e28e46d102706a03e23e3a8 http://www.symantec.com/connect/blogs/strider-cyberespionage-group-turns-eye-sauron-targets https://securelist.com/files/2016/07/The-ProjectSauron-APT_research_KL.pdf |
M16-fn101 | Pramro_0612402a | Windows | This strike sends a malware sample detected by McAfee as Generic.dx!0612402AD98C, Symantec as Trojan.Pramro, Kaspersky as Backdoor.Win32.Small.ljs, ESET-NOD32 as a variant of Win32/Agent.HLU, BitDefender as Generic.Malware.FYdld.A4EB0AFB. | 0612402ad98c8c31cd6f2b914a419039 | 169492897a667322c3ffcabf96834244a4477ec8 0612402ad98c8c31cd6f2b914a419039 f9b8f7f285f811ee720cce7bccd98a421a26fb90dd7b022118d4b4e1f340036b https://www.sans.org/newsletters/at-risk/xvi/32#popular |
M16-q9p01 | Remsec_2a8785bf | Windows | This strike sends a malware sample detected by McAfee as RDN/Generic.dx, Symantec as Backdoor.Remsec, Kaspersky as HEUR:Trojan.Multi.Remsec.gen, ESET-NOD32 as a variant of Win64/Cremes.B, BitDefender as Trojan.GenericKD.3452494. | 2a8785bf45f4f03c10cd929bb0685c2d | d18792a187d7567f3f31908c05a8b8a2647d365f 2a8785bf45f4f03c10cd929bb0685c2d 6c8c93069831a1b60279d2b316fd36bffa0d4c407068dbef81b8e2fe8fd8e8cd http://www.symantec.com/connect/blogs/strider-cyberespionage-group-turns-eye-sauron-targets |
M16-spm01 | Locky_dropper_0e9fb110 | Mixed | This strike sends a malware sample detected by McAfee as Downloader-FBBI!0E9FB110AFAC, Symantec as W97M.Downloader, Kaspersky as Trojan-Downloader.MSWord.Agent.aat, ESET-NOD32 as VBA/TrojanDropper.Agent.FS, BitDefender as W97M.Downloader.AXL. | 0e9fb110afac7a053a751673ba58e5d2 | 7144b039db52066d3a564afbf609be57ea9c5851 0e9fb110afac7a053a751673ba58e5d2 46cf36241696d4127b5d32cbde63a672d9a037d9d47bd59ae8346d83424b53c9 |
M16-zjy01 | IronGate_957581fb | Windows | This strike sends a malware sample detected by McAfee as Artemis!957581FB38A4, Symantec as Trojan.Seaduke, Kaspersky as Trojan.Win32.IronGate.c, ESET-NOD32 as MSIL/IronGate.A, BitDefender as Trojan.IronGate.A. | 957581fb38a4e76e84f60e2bb19b9499 | 8fb1cafbb8ca65c1b8236a20079c40fb4ffbaa68 957581fb38a4e76e84f60e2bb19b9499 ed7a5e48113b1fd206e6a8c46671eb37dab864d1bd6fe44714a0ae377cf1248a https://www.fireeye.com/blog/threat-research/2016/06/irongate_ics_malware.html |
M16-omv01 | Crysis_07e2cfb0 | Windows | This strike sends a malware sample detected by McAfee as Ransomware-FHS!07E2CFB040C1, Symantec as Trojan.Gen, Kaspersky as Trojan-Ransom.Win32.Crusis.f, ESET-NOD32 as a variant of Win32/Filecoder.Crysis.D, BitDefender as Gen:Variant.Razy.37560. | 07e2cfb040c1dafacf0cc836c0968e62 | 3495ad284322490e6697239aaff54d4b16db108a 07e2cfb040c1dafacf0cc836c0968e62 2713037a80b99f8e7a9642a6269f54844ac8b0d8a1059718c4ae2763043a8a9a http://www.trendmicro.com/vinfo/us/security/news/cybercrime-and-digital-threats/crysis-to-take-over-teslacrypt http://www.eweek.com/security/malware-crysis-new-strain-combines-multiple-threats-platforms.html http://www.welivesecurity.com/2016/06/07/beyond-teslacrypt-crysis-family-lays-claim-parts-territory/ |
M16-w4a01 | Dropper_63f96016 | Mixed | This strike sends a malware sample detected by McAfee as W97M/Downloader.bkn, Symantec as Trojan.Mdropper, Kaspersky as Trojan-Dropper.MSWord.Agent.nc, ESET-NOD32 as VBA/TrojanDropper.Agent.MO, BitDefender as W97M.Downloader.EBS. | 63f960169c42435dc2c14d27940823b4 | 4d20d71eff9943e2e15444d60c5857aaad6a0826 63f960169c42435dc2c14d27940823b4 53c7c527a0b32fb5cf6595ed38998c8caa9e58479f9d488db42a9b68a43df256 |
M16-5mt01 | Locky_dropper_7f94e43b | Mixed | This strike sends a malware sample detected by McAfee as W97M/Downloader.axr, Symantec as W97M.Downloader, Kaspersky as Trojan-Downloader.MSWord.Agent.aav, ESET-NOD32 as VBA/TrojanDownloader.Agent.ASQ, BitDefender as W97M.Downloader.AUY. | 7f94e43bb7dc5dad12840550eee86ede | 8db1833edb8502325384980dcadb76f688e77286 7f94e43bb7dc5dad12840550eee86ede 566878276748089f6e87b20fd18bfab4018d9e33fae6e28cb87ffb43b1b80582 |
M16-dc001 | Remsec_6ca97b89 | Windows | This strike sends a malware sample detected by McAfee as W32/Remsec-APT!6CA97B89AF29, Symantec as Backdoor.Remsec, Kaspersky as HEUR:Trojan.Multi.Remsec.gen, ESET-NOD32 as a variant of Win32/Cremes.C, BitDefender as Gen:Variant.Barys.9635. | 6ca97b89af29d7eff94a3a60fa7efe0a | 4778011bae38d7e82042397a057196eea8f2acde 6ca97b89af29d7eff94a3a60fa7efe0a a66bfda3d877a216665ebeb4ee3ba5a96d0094fdfd62bc8fe449b326fefc66bf http://www.symantec.com/connect/blogs/strider-cyberespionage-group-turns-eye-sauron-targets |
M16-q8a01 | CryptXXX_22288a76 | Windows | This strike sends a malware sample detected by McAfee as RDN/Ransom, Symantec as Trojan.Cryptolocker.AN, Kaspersky as Trojan.Win32.Reconyc.fnov, ESET-NOD32 as Win32/Filecoder.CryptProjectXXX.C. | 22288a76cfa7348ced6db347b2085f18 | d7ee6eb9d5390b9afbfc50f958dd95f7bb122c1a 22288a76cfa7348ced6db347b2085f18 923de3ca1ccc9bd8e50a77a43d35392febbe80832841d99857c45208c48b7d40 https://www.proofpoint.com/us/threat-insight/post/cryptxxx2-ransomware-authors-strike-back-against-free-decryption-tool |
M16-owp01 | Pramro_cc9e1075 | Windows | This strike sends a malware sample detected by McAfee as Generic.dx!CC9E1075DB06, Symantec as Trojan.Pramro, Kaspersky as Backdoor.Win32.Small.ljt, ESET-NOD32 as a variant of Win32/Pramro.A, BitDefender as Trojan.Crypt.HO. | cc9e1075db0645f1032f8c4b4412deba | 7af622d5309b8721ab08e6403bcce4820c468199 cc9e1075db0645f1032f8c4b4412deba 8897f94710f3ca65af0e52f6e2b76e6319dd5fb0dd6ad0968f8acc0d25ee783a |
M16-ir101 | SFG_564ac87c | Windows | This strike sends a malware sample detected by McAfee as Generic.acu, Symantec as Trojan.Furtim, Kaspersky as Backdoor.Win32.Furtim.a, ESET-NOD32 as a variant of Win32/Kryptik.EVLY, BitDefender as Trojan.GenericKD.3179484. | 564ac87ca4114edd6a84a005092f1285 | 638d549a24bb0a28e462c70880bf3f979f137cc6 564ac87ca4114edd6a84a005092f1285 766e49811c0bb7cce217e72e73a6aa866c15de0ba11d7dda3bd7e9ec33ed6963 https://sentinelone.com/blogs/sfg-furtims-parent/ http://thehackernews.com/2016/07/scada-malware-energy.html |
M16-cnh01 | Chthonic_04f75d12 | Mixed | This strike sends a malware sample detected by Symantec as JS.Downloader, Kaspersky as HEUR:Trojan-Downloader.Script.Generic, BitDefender as JS:Trojan.Script.DJM. | 04f75d12660b13d972ac4c8cbf143de9 | c53fca1e1fee6f0be377837f258ae671a7604677 04f75d12660b13d972ac4c8cbf143de9 865d2e9cbf5d88ae8b483f0f5e2397449298651381f66c55b7afd4b750eb4da4 https://www.proofpoint.com/uk/threat-insight/post/threat-actors-using-legitimate-paypal-accounts-to-distribute-chthonic-banking-trojan http://securityaffairs.co/wordpress/49891/cyber-crime/paypal-chthonic-trojan.html |
Strike ID | Malware | Platform | Info | MD5 | External References |
---|---|---|---|---|---|
M16-gou01 | BlackEnergy_75793fd7 | Windows | This strike sends a malware sample detected by McAfee as Downloader-FAR!75793FD7C337, Symantec as Suspicious.MH690.A, Kaspersky as Backdoor.Win32.Kbot.bjd, BitDefender as Trojan.Inject.GF. | 75793fd7c33746dd4d15bc44e8e34253 | 7256a2ab9c6918cf33b208d621d791dbad49d529 75793fd7c33746dd4d15bc44e8e34253 4a1332c5d4117ce699477eea8fa4c8c0d97e59588f87c0f61811a8fe36a4a55e http://www.trendmicro.com/vinfo/us/security/news/cyber-attacks/faq-blackenergy |
M16-1xw01 | BlackEnergy_f61a11fb | Windows | This strike sends a malware sample detected by McAfee as FDoS-BEnergy, Symantec as Backdoor.Lancafdo, Kaspersky as Backdoor.Win32.Kbot.brj, ESET-NOD32 as Win32/Agent.NGC, BitDefender as Trojan.Downloader.JIUP. | f61a11fb43f17a34cc6a099c73d0cdcf | dae5a2805f79b43d6be24117ef8050c8ec1148be f61a11fb43f17a34cc6a099c73d0cdcf 8aaa4827da8513e0057d4be83629e3ec8687c099ee0021abfce70fd0f59179b5 http://www.trendmicro.com/vinfo/us/security/news/cyber-attacks/faq-blackenergy |
M16-yfp01 | CryptXXX_2bec8785 | Windows | This strike sends a malware sample detected by McAfee as RDN/Ransom, Symantec as Trojan.Cryptolocker.AN, Kaspersky as Trojan-Ransom.Win32.Bitman.abqw, ESET-NOD32 as Win32/Filecoder.CryptProjectXXX.B, BitDefender as Trojan.Generic.16665947. | 2bec87853aacf31138a8dcf16cb5598a | b5a38fc428034ac68c2424d1b4a52933374fe936 2bec87853aacf31138a8dcf16cb5598a bd97a8672ce7045d24829ffc8be712463242ba182326bee29a569e1e767e48c4 http://www.bleepingcomputer.com/virus-removal/cryptxxx-ransomware-help-information |
M16-hog01 | BlackEnergy_77333739 | Windows | This strike sends a malware sample detected by McAfee as Downloader-FAR!773337394227, Symantec as Trojan.Gen, Kaspersky as Trojan-Ransom.Win32.PornoAsset.gbx, BitDefender as Trojan.Inject.GF. | 7733373942272ef21a57dbeb6f106112 | 25fbd95e90cea72fd16189d8ea76f9afc3c23d7e 7733373942272ef21a57dbeb6f106112 f1b42a20886c4749d64327d3b04cd1cf9b26e3c7f4bd6fe5eeb126bf09281b73 http://www.trendmicro.com/vinfo/us/security/news/cyber-attacks/faq-blackenergy |
M16-bdj01 | BlackEnergy_88789506 | Windows | This strike sends a malware sample detected by Kaspersky as Backdoor.Win32.Kbot.bhk, BitDefender as Trojan.Inject.GF. | 887895062c616e28479b34f6703d1469 | 16a0c7f1d02520e20fa740b218215540bff4f28c 887895062c616e28479b34f6703d1469 051b0ee64b406e2c0894a820e06483f135108ce2fa940a66b6f468762b5db769 http://www.trendmicro.com/vinfo/us/security/news/cyber-attacks/faq-blackenergy |
M16-udz01 | CryptXXX_84462434 | Windows | This strike sends a malware sample detected by McAfee as Ransomware-FLK!84462434E357, Symantec as Trojan.Cryptolocker.AN, Kaspersky as Trojan-Ransom.Win32.CryptXXX.ali, ESET-NOD32 as a variant of Win32/Kryptik.EZAI, BitDefender as Trojan.GenericKD.3268405. | 84462434e35745e732bc3678c4343236 | a02962660b934c0d5b8df4e7fbb12ac5a68c8df8 84462434e35745e732bc3678c4343236 c87a3e7901defac48f531367d45306b7b2df33752b4a37f3744e029898bd1c1c http://www.bleepingcomputer.com/virus-removal/cryptxxx-ransomware-help-information |
M16-r2101 | BlackEnergy_374a13c3 | Windows | This strike sends a malware sample detected by McAfee as FDoS-BEnergy, Symantec as Downloader, Kaspersky as Trojan-Downloader.Win32.Small.fyn, ESET-NOD32 as Win32/Agent.NGC, BitDefender as Trojan.Downloader.Agent.YQY. | 374a13c378c024813b59b799f0536187 | ae1587ac21fd6a9cc6630b8689243901e0fd7fa8 374a13c378c024813b59b799f0536187 bc7877f47f0efa34809aa801b617101c9d77cc7adbef5ed6a82cefe3ccca04df http://www.trendmicro.com/vinfo/us/security/news/cyber-attacks/faq-blackenergy |
M16-78501 | TorrentLocker_7a7850b6 | Windows | This strike sends a malware sample detected by McAfee as Generic.ys, Symantec as Trojan.Gen.SMH, Kaspersky as Trojan-Ransom.NSIS.Onion.qlz, ESET-NOD32 as Win32/Filecoder.TorrentLocker.A, BitDefender as Trojan.GenericKD.3290845. | 7a7850b6c9f1b0873160e20ba2ed5fdf | 6ecd0bca7c8c4d358ef16749d7c2a5a4ee934087 7a7850b6c9f1b0873160e20ba2ed5fdf 7e19c20e3e65acb81359a815c1e79bfc527fd60f742bc339c3f33326de0c9c92 http://securityaffairs.co/wordpress/47834/malware/telia-ransomware-campaign.html |
M16-40f01 | TorrentLocker_14dc5bc2 | Windows | This strike sends a malware sample detected by McAfee as RDN/Generic.bfr, Symantec as Trojan.Cryptolocker.H, Kaspersky as Backdoor.Win32.Androm.jwms, ESET-NOD32 as Win32/Filecoder.TorrentLocker.A, BitDefender as Trojan.GenericKD.3292161. | 14dc5bc2c7c852ec7b834da667ea2f16 | 158f3489ef1068ea72ea4d67432eb0b7a2e754bc 14dc5bc2c7c852ec7b834da667ea2f16 fc0457fa210f093e2469e788c05cee3f0900a6ca2cdecd0a0552dcec4a7d2781 http://securityaffairs.co/wordpress/47834/malware/telia-ransomware-campaign.html |
M16-9i501 | TreasureHunter_6a9348f5 | Windows | This strike sends a malware sample detected by McAfee as Artemis!6A9348F582B2, Symantec as Trojan.Huntpos, Kaspersky as HEUR:Trojan.Win32.Generic, ESET-NOD32 as Win32/Agent.XAS, BitDefender as Gen:Variant.Zusy.160237. | 6a9348f582b2e121a5d9bff1e8f0935f | e03dbcf2d45cf99fbcd9aef453cdeb3a00c59d4c 6a9348f582b2e121a5d9bff1e8f0935f fe5f50fce2f430432a636ef899919505e9477968d8caff7506e888cffed0b5f8 https://www.fireeye.com/blog/threat-research/2016/03/treasurehunt_a_cust.html |
M16-f2001 | CryptXXX_e40e0ff4 | Windows | This strike sends a malware sample detected by McAfee as Ransomware-FMW!E40E0FF435A5, Symantec as Trojan.Gen.SMH, Kaspersky as Trojan-Ransom.Win32.CryptXXX.bex, ESET-NOD32 as a variant of Win32/Kryptik.EZJQ, BitDefender as Trojan.GenericKD.3295338. | e40e0ff435a5b02caaeeed44b439d299 | 5eee6676a7e50710e5cd3b184279689a6111135f e40e0ff435a5b02caaeeed44b439d299 75a927e636c788b7e54893161a643c258fecbbf47d6e7308d3439091aa3ce534 http://www.bleepingcomputer.com/virus-removal/cryptxxx-ransomware-help-information |
M16-3az01 | Pisloader_7b24d17e | Windows | This strike sends a malware sample detected by McAfee as RDN/Ransom, Symantec as Backdoor.Psiload, Kaspersky as Trojan-Ransom.Win32.Blocker.hmdv, ESET-NOD32 as a variant of Win32/Roseam.B, BitDefender as Gen:Variant.Symmi.33154. | 7b24d17e5f29e27b1c17127839be591a | 1c581a09963109fc526a71adc5cde8e6c89ce615 7b24d17e5f29e27b1c17127839be591a 6852ba95720af64809995e04f4818517ca1bd650bc42ea86d9adfdb018d6b274 http://researchcenter.paloaltonetworks.com/2016/05/unit42-new-wekby-attacks-use-dns-requests-as-command-and-control-mechanism/ |
M16-yvn01 | TorrentLocker_c86a3887 | Windows | This strike sends a malware sample detected by McAfee as RDN/Ransom, Symantec as Trojan.Cryptolocker.H, Kaspersky as Trojan-Ransom.NSIS.Onion.pli, ESET-NOD32 as Win32/Filecoder.TorrentLocker.A, BitDefender as Trojan.GenericKD.3240422. | c86a3887813d7c084833973c910b02a4 | 10f35960a8b8399dd03a30795976222b84505f65 c86a3887813d7c084833973c910b02a4 a96e010f86d38528ff6039c16a36d75feef2471df9b6b3955a1f4c51d82fbf7d http://securityaffairs.co/wordpress/47834/malware/telia-ransomware-campaign.html |
M16-9jq01 | Pisloader_e8d58aa7 | Windows | This strike sends a malware sample detected by McAfee as RDN/Ransom, Symantec as Backdoor.Psiload, Kaspersky as Trojan-Ransom.Win32.Blocker.ihhd, ESET-NOD32 as a variant of Win32/Roseam.B, BitDefender as Gen:Variant.Symmi.33154. | e8d58aa76dd97536ac225949a2767e05 | c6db4ddc514869a41272abba5e10de70b888476a e8d58aa76dd97536ac225949a2767e05 da3261c332e72e4c1641ca0de439af280e064b224d950817a11922a8078b11f1 http://researchcenter.paloaltonetworks.com/2016/05/unit42-new-wekby-attacks-use-dns-requests-as-command-and-control-mechanism/ |
M16-y1r01 | TorrentLocker_e3709335 | Windows | This strike sends a malware sample detected by McAfee as RDN/Generic.com, Symantec as Trojan.Cryptolocker.H, Kaspersky as Backdoor.Win32.Androm.jwny, ESET-NOD32 as Win32/Filecoder.TorrentLocker.A, BitDefender as Trojan.GenericKD.3293355. | e370933525dc475dce213ca8177439ff | 95efcc5a0765f7923e4e9eabcd1ba9b1e55235a3 e370933525dc475dce213ca8177439ff 3bceff32e63db27ef483339e86e328c7506e2f2542b81a25e9206dbd29c67b52 http://securityaffairs.co/wordpress/47834/malware/telia-ransomware-campaign.html |
M16-mai01 | TorrentLocker_49f12a7b | Windows | This strike sends a malware sample detected by McAfee as RDN/Generic.grp, Symantec as Trojan.Cryptolocker.H, Kaspersky as Trojan.Win32.Agent.ijcx, ESET-NOD32 as Win32/Filecoder.TorrentLocker.A, BitDefender as Trojan.GenericKD.3312322. | 49f12a7b358c7f7cba005610210418aa | 3b2a6dc3ad4846bb2e642b8063102ce0bba4c039 49f12a7b358c7f7cba005610210418aa aa2a2d55915d08571e7304b2033ed90bc29f1b162da7e2722d4ffabcd6e3477f http://securityaffairs.co/wordpress/47834/malware/telia-ransomware-campaign.html |
M16-kaq01 | BlackEnergy_e90de0d6 | Windows | This strike sends a malware sample detected by McAfee as PWS-FAPU!E90DE0D6D99B, Symantec as Suspicious.Cloud.2, Kaspersky as Packed.Win32.Krap.ae, ESET-NOD32 as Win32/Rootkit.BlackEnergy.AC, BitDefender as Gen:Variant.Zusy.191357. | e90de0d6d99bc0e6e5713102a3f0c157 | 449a9a4a505a9d03c606e957e970cd4bf3c08d6e e90de0d6d99bc0e6e5713102a3f0c157 333d83ceb0828e61dc25223249ef8406928aec56c7a4076ee8e99d8afdea75f3 http://www.theregister.co.uk/2016/03/04/ukraine_blackenergy_confirmation/ |
M16-h4i01 | AndroidMarcher_c0596e35 | Android | This strike sends a malware sample detected by McAfee as Artemis!C0596E35BD67, Symantec as Android.Fakebank.B, Kaspersky as HEUR:Trojan-Banker.AndroidOS.Marcher.b, ESET-NOD32 as a variant of Android/Spy.Banker.F, BitDefender as Android.Trojan.Marcher.A. | c0596e35bd67ccc05c682e7a9c5befa0 | ac17225c526ecbfeb2e2f248916ff90193ec477b c0596e35bd67ccc05c682e7a9c5befa0 5bf7648743c0ff2207c5653b12f077f9d6a6a013cbcb3e2e2d5d94605b2ba08e https://info.phishlabs.com/blog/android.trojan.marcher-conclusion |
M16-5oy01 | BlackEnergy_d98f4fc6 | Windows | This strike sends a malware sample detected by McAfee as RDN/Generic BackDoor, Symantec as Backdoor.Lancafdo.A, Kaspersky as Backdoor.Win64.Blakken.p, ESET-NOD32 as a variant of Win64/Rootkit.BlackEnergy.B, BitDefender as Trojan.Win64.BlackEnergy.A. | d98f4fc6d8bb506b27d37b89f7ce89d0 | e40f0d402fdcba6dd7467c1366d040b02a44628c d98f4fc6d8bb506b27d37b89f7ce89d0 1ce0dfe1a6663756a32c69f7494ad082d293d32fe656d7908fb445283ab5fa68 http://www.trendmicro.com/vinfo/us/security/news/cyber-attacks/faq-blackenergy |
M16-z3h01 | BlackEnergy_9fd279d0 | Windows | This strike sends a malware sample detected by McAfee as W32/Worm-FGB!9FD279D056DC, Symantec as Suspicious.Cloud.7.L, Kaspersky as Trojan.Win32.Menti.gena, ESET-NOD32 as Win32/Rootkit.BlackEnergy.AC, BitDefender as Gen:Heur.Conjar.13. | 9fd279d056dc819bc47767c9c39db977 | f4375f1c7ef07c17b1548c0459aeae719c9a4b5a 9fd279d056dc819bc47767c9c39db977 49aee5d89debbc6dfdb37c8a158f986654b8c1663f5ee1a1297cdf1009fb163f http://www.trendmicro.com/vinfo/us/security/news/cyber-attacks/faq-blackenergy |
M16-nxv01 | CryptXXX_ac78dfe7 | Windows | This strike sends a malware sample detected by McAfee as RDN/Ransom, Symantec as Trojan.Cryptolocker.AN, Kaspersky as Trojan-PSW.Win32.Tepfer.psxiug, ESET-NOD32 as a variant of Win32/Kryptik.EVXC, BitDefender as Trojan.GenericKD.3185268. | ac78dfe7f8d91e0e14d88c4ad3718267 | 44e8fb0e8cc5ad230f43c48c20f871b10d26f213 ac78dfe7f8d91e0e14d88c4ad3718267 2ffabf5eaa69f9c50f2e0c1a26dd6ccf45de5f3ee2822e9c9cf275fdebc990a9 http://www.bleepingcomputer.com/virus-removal/cryptxxx-ransomware-help-information |
M16-lzk01 | TreasureHunter_ea6248e4 | Windows | This strike sends a malware sample detected by McAfee as RDN/Generic PWS.y, Symantec as Trojan.Gen, Kaspersky as HEUR:Trojan.Win32.Generic, ESET-NOD32 as Win32/Agent.XAS, BitDefender as Gen:Variant.Zusy.160237. | ea6248e4ddd080e60e6140ab0f8562e1 | 67bd53130d2ebe851489b607b81ca2d2fb0a20f9 ea6248e4ddd080e60e6140ab0f8562e1 7eca8bf6d17891529c74d8fce85471135a203f312ae09fe3d907355c7dea9f59 https://www.fireeye.com/blog/threat-research/2016/03/treasurehunt_a_cust.html |
M16-ufc01 | BlackEnergy_1d4c1ca4 | Windows | This strike sends a malware sample detected by McAfee as Downloader.a!b2z, Kaspersky as Backdoor.Win32.Kbot.bhn, BitDefender as Trojan.Generic.7206996. | 1d4c1ca48f764a2a6636c0211387012e | 3727fb219a31c6d0690dfcd408eb3d0bc2dd3ac3 1d4c1ca48f764a2a6636c0211387012e f5066fd62fcb79475d67b100d340e93c9532a0d6ef70c1a48074eac6a22a2650 http://www.trendmicro.com/vinfo/us/security/news/cyber-attacks/faq-blackenergy |
M16-9fn01 | Kazy_c889afc5 | Windows | This strike sends a malware sample detected by McAfee as Downloader-BLO, Kaspersky as Trojan-Spy.Win32.Zbot.cnva, ESET-NOD32 as a variant of Win32/Kryptik.AAUK, BitDefender as Gen:Variant.Kazy.46303. | c889afc59efb6e8305c49c0addc1d291 | 698e12dc13bcf3f0a8756b4c39e370010bc606c3 c889afc59efb6e8305c49c0addc1d291 44c69579822384106401e10ea8b55e14154c452558b6636a06fd5e4accb9754b |
M16-tg401 | Raa_535494aa | Mixed | This strike sends a malware sample detected by McAfee as JS/RAA-SEP, Symantec as JS.Racryptor, Kaspersky as Trojan.JS.Agent.dhf, ESET-NOD32 as JS/TrojanDropper.Agent.NCS. | 535494aa6ce3ccef7346b548da5061a9 | 2c0b5637701c83b7b2aeabdf3120a89db1dbaad7 535494aa6ce3ccef7346b548da5061a9 edffa07d667dbd224682639f56eb1b913e4ffeac874999e02c23e86eeb6489d5 https://reaqta.com/2016/06/raa-ransomware-delivering-pony/ |
M16-fs101 | BlackEnergy_fd0cbe75 | Windows | This strike sends a malware sample detected by McAfee as New Win32.g3-b, Kaspersky as Backdoor.Win32.Kbot.bjs, BitDefender as Trojan.Inject.GF. | fd0cbe75e36a44691a71609894cdf1a5 | c3f9d159eeb95c8a779f57cd8835bdf791cc6a12 fd0cbe75e36a44691a71609894cdf1a5 56d0ded624bf372a741c38550d520895f5ae4c8ec35e5bab76a0aebd3849652d http://www.trendmicro.com/vinfo/us/security/news/cyber-attacks/faq-blackenergy |
Strike ID | Malware | Platform | Info | MD5 | External References |
---|---|---|---|---|---|
M16-j9501 | W97MAdnel_938edc1f | Mixed | This strike sends a malware sample detected by McAfee as W97M/Downloader.azc, Symantec as W97M.Downloader, Kaspersky as Trojan-Downloader.VBS.Agent.bgx, ESET-NOD32 as VBA/TrojanDropper.Agent.FY, BitDefender as w97M.Downloader.AYT. | 938edc1fbe831172b7d51343e2127a01 | cc3229181a58b332aa841682572583fac295e280 938edc1fbe831172b7d51343e2127a01 d1f2356a98d8c0f9665cb753f9feb01b3425cea40e90bcbf17db4b2de58a3863 http://blog.cyren.com/articles/new-tricks-of-macro-malware.html |
M16-8fp01 | Locky_b06d9dd1 | Windows | This strike sends a malware sample detected by McAfee as Ransomware-Locky!B06D9DD17C69, Symantec as Trojan.Cryptolocker.AF, Kaspersky as Trojan-Ransom.Win32.Locky.d, ESET-NOD32 as Win32/Filecoder.Locky.A, BitDefender as Trojan.GenericKD.3048400. | b06d9dd17c69ed2ae75d9e40b2631b42 | b606aaa402bfe4a15ef80165e964d384f25564e4 b06d9dd17c69ed2ae75d9e40b2631b42 bc98c8b22461a2c2631b2feec399208fdc4ecd1cd2229066c2f385caa958daa3 http://securityaffairs.co/wordpress/45273/cyber-crime/locky-ransomware-spam-campaign.html |
M16-dur01 | KeRanger_1d6297e2 | MacOS | This strike sends a malware sample detected by McAfee as OSX/Ransom.KeRanger.b, Symantec as OSX.Keranger, Kaspersky as HEUR:Trojan-Ransom.OSX.KeRanger.a, ESET-NOD32 as OSX/Filecoder.KeRanger.A, BitDefender as Trojan.MAC.KeRangerRansom.A. | 1d6297e2427f1d00a5b355d6d50809cb | 5f8ae46ae82e346000f366c3eabdafbec76e99e9 1d6297e2427f1d00a5b355d6d50809cb d1ac55a4e610380f0ab239fcc1c5f5a42722e8ee1554cba8074bbae4a5f6dbe1 http://thehackernews.com/2016/03/mac-os-x-ransomware.html |
M16-5ez01 | Golem_9b18b273 | Android | This strike sends a malware sample detected by McAfee as Artemis!C23DD69DB4C9, ESET-NOD32 as a variant of Win32/FlyStudio potentially unwanted. | 9b18b273c88ba3df440dee693acc33ad | c1230cba8a20afc532a50e1e1d8619ff3995b868 9b18b273c88ba3df440dee693acc33ad b060afb80e686f497a36d3218b78f082d4e320068fe6af641eca1300972b964a http://www.infosecurity-magazine.com/news/golem-android-trojan-mobile-apps/ |
M16-c6901 | Retefe_ef26c649 | Windows | This strike sends a malware sample detected by McAfee as Ransomware-Locky!EF26C6494B6F, Symantec as Infostealer.Alina, Kaspersky as Trojan.Win32.Agent.ihps, ESET-NOD32 as Win32/Alinaos.H, BitDefender as Gen:Variant.Retefe.16. | ef26c6494b6f58fb7a01292c1b60d840 | 812a94e2efee245da285d4c85e2b69904ef25a9f ef26c6494b6f58fb7a01292c1b60d840 bd47e3c5e325cd53154912202656fc74fc52c3d2abe83556e7c4ba7b968abe8b http://countuponsecurity.com/2016/02/29/retefe-banking-trojan/ |
M16-yyn01 | Cerber_75260026 | Windows | This strike sends a malware sample detected by McAfee as RDN/Generic.bfr, Symantec as Suspicious.Cloud.9, Kaspersky as Trojan.Win32.SelfDel.buhu, ESET-NOD32 as Win32/Filecoder.Cerber.A, BitDefender as Trojan.GenericKD.3083818. | 75260026df0ea858b7e6b281184ba183 | c897c4f374bb2d940a99dd90990e083e61e208c3 75260026df0ea858b7e6b281184ba183 bcdf7a4f4e0eefd55ec0a814b382559c815106cb7820c93e7bb8a8e216e8c78d https://blog.malwarebytes.org/intelligence/2016/03/cerber-ransomware-new-but-mature/ |
M16-00l01 | PonyStealer_b7d75c37 | Windows | This strike sends a malware sample detected by McAfee as Fareit-FBK!B7D75C379F75, Symantec as Downloader.Ponik, Kaspersky as Trojan-PSW.Win32.Tepfer.gen, ESET-NOD32 as a variant of Win32/PSW.Agent.NTM, BitDefender as Gen:Variant.Graftor.Elzob.7674. | b7d75c379f7566079bd17751828dbeb1 | 9910f6598d0846122be22687348943aad7dec435 b7d75c379f7566079bd17751828dbeb1 87a37c3f180452fbd05fec668587c33921e2a6d4ce74676e9ae5cd3483b77777 http://resources.infosecinstitute.com/a-case-study-of-information-stealers-part-i/#article |
M16-0wl01 | W97MAdnel_8c27afe0 | Mixed | This strike sends a malware sample detected by McAfee as W97M/Downloader.azc, Symantec as W97M.Downloader, Kaspersky as Trojan-Downloader.VBS.Agent.bgx, ESET-NOD32 as VBA/TrojanDropper.Agent.FY. | 8c27afe0de658a2f46232c4af0d18f3b | c3e5495d952a5b48e5226e5e4607833b82c799ac 8c27afe0de658a2f46232c4af0d18f3b 11da643b0a40fe9f6d71f8c096be5f18472eb4dab69123465b7937227c0b5a8d http://blog.cyren.com/articles/new-tricks-of-macro-malware.html |
M16-jn201 | Triada_b78d7413 | Android | This strike sends a malware sample detected by McAfee as Artemis!B78D7413F333, Kaspersky as HEUR:Trojan-Dropper.AndroidOS.Gorpo.b, ESET-NOD32 as a variant of Android/Agent.RL, BitDefender as Android.Trojan.Triada.Z. | b78d7413f33386fe243b97eae358bd7f | 70623b14e89ce84825fed4340bf8b793735e9782 b78d7413f33386fe243b97eae358bd7f e2327f8b9ec15a6b115f689c291c8cffeff65b040fffc5d82b2784c6ed18abd6 http://www.securityweek.com/triada-trojan-most-advanced-mobile-malware-yet-kaspersky |
M16-lus01 | W97MAdnel_d7446579 | Mixed | This strike sends a malware sample detected by McAfee as W97M/Downloader.azc, Kaspersky as Trojan-Downloader.VBS.Agent.bgx, ESET-NOD32 as VBA/TrojanDropper.Agent.FY. | d7446579c41f78d8cf520dfeea17840a | 5b01ec3025aabaa6b4eb116e7ebafaf33fdfb5bd d7446579c41f78d8cf520dfeea17840a fa803369648084e6cef6f55b537cadf1f394f1a3519a4e17a1b149b80c475bee http://blog.cyren.com/articles/new-tricks-of-macro-malware.html |
M16-ie401 | W97MAdnel_07bc4a94 | Mixed | This strike sends a malware sample detected by McAfee as W97M/Downloader.azc, Symantec as W97M.Downloader, Kaspersky as HEUR:Trojan-Downloader.Script.Generic, ESET-NOD32 as VBA/TrojanDropper.Agent.FY, BitDefender as w97M.Downloader.AYT. | 07bc4a941ec01e15ce67604f90ada1e3 | 2d5426605bce35872cd9d2026e07b5d8d90d9ed7 07bc4a941ec01e15ce67604f90ada1e3 8dc40958ddcebe5fd8a167625b56810209c972c3152ec31c618bb445bcb95f09 http://blog.cyren.com/articles/new-tricks-of-macro-malware.html |
M16-5qa01 | W97MAdnel_a1a65d7f | Mixed | This strike sends a malware sample detected by McAfee as W97M/Downloader.azh, Symantec as W97M.Downloader, Kaspersky as Trojan.MSWord.Agent.cq, ESET-NOD32 as VBA/TrojanDownloader.Agent.AUO, BitDefender as w97M.Downloader.AYQ. | a1a65d7f21eabd585c89dd7ee5b5527d | 0bd222bc25691660dc6cd1dd89a2d5ca4e7678ca a1a65d7f21eabd585c89dd7ee5b5527d 1303bf3b98ce888f0944785f83b7ce54438b385246ec7cd5b5ad512f6fc9fbac http://blog.cyren.com/articles/new-tricks-of-macro-malware.html |
M16-4tn01 | FighterPOS_dec45e9c | Windows | This strike sends a malware sample detected by Symantec as Infostealer.Fightpos, BitDefender as Trojan.GenericKD.2298316. | dec45e9ccfc7229e666a7de8b9099030 | 6dff70d44766a9f536431f690335d9eef10354c0 dec45e9ccfc7229e666a7de8b9099030 95b0cdf25bb8ce942f1493ccb69e84322bfb5e2b8196a117c577bf77bc4840fd http://securityaffairs.co/wordpress/44886/cyber-crime/fighterpos-pos-malware.html |
M16-osh01 | LinuxEkom_c9e0e5e2 | Linux | This strike sends a malware sample detected by McAfee as Linux/Mokes, Symantec as Linux.Mokes, Kaspersky as Backdoor.Linux.Mokes.a, ESET-NOD32 as Linux/Mokes.A, BitDefender as Backdoor.Linux.Agent.X. | c9e0e5e2aeaecb232120e8573e97a6b8 | 3790284950a986bc28c76b5534bfe9cea1dd78b0 c9e0e5e2aeaecb232120e8573e97a6b8 d7d1257a8a7dc21eb82715b70c6f4177f515963aec4bd1bdecdf1cd164fcd5ef http://www.technewsworld.com/story/83020.html |
M16-khe01 | Ransom_3f11c832 | Windows | This strike sends a malware sample detected by McAfee as RDN/Ransom, Symantec as Trojan.Randsom.A, Kaspersky as Trojan-Ransom.Win32.Cryptodef.yom, ESET-NOD32 as a variant of Win32/Kryptik.DWDZ, BitDefender as Trojan.Ransom.AKU. | 3f11c83279dc94462ee5eb7759d2b8ad | bc1019503e7857ff61f850f1f923e9cc6ef9f58a 3f11c83279dc94462ee5eb7759d2b8ad 885704e0c2640f7e9535571cdbe3875e6b98bf240dc2ea54564b66a4055e3adb |
M16-ebw01 | W97MAdnel_85d679c6 | Mixed | This strike sends a malware sample detected by McAfee as W97M/Downloader.azc, Symantec as W97M.Downloader, Kaspersky as Trojan-Downloader.VBS.Agent.bgx, ESET-NOD32 as VBA/TrojanDropper.Agent.FY. | 85d679c698199c75df4de812b138d7ef | 1caa7f1901c82bf16446eae5739fd24114f02676 85d679c698199c75df4de812b138d7ef 7ddd0ffbb16da85c3faca94256dd54799e46839dffbb5a4704dacbdd0be18b09 http://blog.cyren.com/articles/new-tricks-of-macro-malware.html |
M16-dys01 | Fysbis_364ff454 | Linux | This strike sends a malware sample detected by McAfee as Linux/Fysbis, Symantec as Backdoor.Trojan, Kaspersky as Backdoor.Linux.Fysbis.a, ESET-NOD32 as Linux/Fysbis.A, BitDefender as Backdoor.Linux.Fysbis.A. | 364ff454dcf00420cff13a57bcb78467 | 9444d2b29c6401bc7c2d14f071b11ec9014ae040 364ff454dcf00420cff13a57bcb78467 8bca0031f3b691421cb15f9c6e71ce193355d2d8cf2b190438b6962761d0c6bb http://securityaffairs.co/wordpress/44551/hacking/pawn-storm-linux-fysbis-trojan.html |
M16-opc01 | Triada_d2a2b82f | Android | This strike sends a malware sample detected by McAfee as Artemis!872ED96CE683, Kaspersky as not-a-virus:HEUR:AdWare.AndroidOS.Drosel.e, ESET-NOD32 as a variant of Android/Secapk.F potentially unsafe, BitDefender as Android.Trojan.Triada.Z. | d2a2b82fcafb3c1fd30c56396465ad1b | 3e9f812cbd1ed5616921ca4e63081f5351603cae d2a2b82fcafb3c1fd30c56396465ad1b b2a721e461f784b0e5a217b3b871cab780dd0b4a2c4cc0c51b3846969a9eafd8 http://www.securityweek.com/triada-trojan-most-advanced-mobile-malware-yet-kaspersky |
M16-sd101 | KeRanger_24a8f01c | MacOS | This strike sends a malware sample detected by McAfee as OSX/Ransom.KeRanger.b, Symantec as OSX.Keranger, Kaspersky as HEUR:Trojan-Ransom.OSX.KeRanger.a, ESET-NOD32 as OSX/Filecoder.KeRanger.A, BitDefender as Trojan.MAC.KeRangerRansom.A. | 24a8f01cfdc4228b4fc9bb87fedf6eb7 | e2f6d5912565ad3a2c9b3393cf7aff0110738f5c 24a8f01cfdc4228b4fc9bb87fedf6eb7 d7d765b1ddd235a57a2d13bd065f293a7469594c7e13ea7700e55501206a09b5 http://thehackernews.com/2016/03/mac-os-x-ransomware.html |
M16-mk301 | W97MAdnel_9261f7b4 | Mixed | This strike sends a malware sample detected by McAfee as W97M/Downloader.azc, Symantec as W97M.Downloader, Kaspersky as Trojan-Downloader.VBS.Agent.bgx, ESET-NOD32 as VBA/TrojanDropper.Agent.FY, BitDefender as Trojan.Agent.BRIB. | 9261f7b4f1f977b84e8fb51173b02b60 | e28f5eefa54e3cebc7182b21ec59cf3a295d1224 9261f7b4f1f977b84e8fb51173b02b60 d86e0598c08d86fdcadea52b5da4d2ee8531c801884b83108bdaca42eaeb60b3 http://blog.cyren.com/articles/new-tricks-of-macro-malware.html |
M16-j4001 | XML_W2KM_DLOADER_77739ab6 | Windows | This strike sends a malware sample detected by McAfee as W97M/Downloader.aeh, Symantec as Downloader, Kaspersky as Trojan-Downloader.MSWord.Agent.fh, ESET-NOD32 as W97M/TrojanDownloader.Agent.NES, BitDefender as W97M.Downloader.HS. | 77739ab6c20e9dfbeffa3e2e6960e156 | 7fd78e9a3a47f12386acd0d04f76000ef72442d1 77739ab6c20e9dfbeffa3e2e6960e156 583c668dce73021aae44daab0788fc8ae5fecefab0989ab45ee60bba00465943 https://isc.sans.edu/forums/diary/XML+A+New+Vector+For+An+Old+Trick/19423/ |
M16-fdj01 | DOTdo_46ac4aa6 | Windows | This strike sends a malware sample detected by McAfee as Artemis!46AC4AA695EC, Symantec as Trojan.Gen.2, Kaspersky as not-a-virus:AdWare.MSIL.Agent.fq, BitDefender as Dropped:Adware.Generic.1043327. | 46ac4aa695ec244aeb3b2994dce0a9c0 | 168a52e33909047bd5d5f3e4937fe0694b775613 46ac4aa695ec244aeb3b2994dce0a9c0 5e7b2143fe1571dad1d3af1dbd87e380336ccd14fc83238e445563fbd91bfd3e https://blog.malwarebytes.org/intelligence/2016/03/adware-pup-dotdo-fastinternet-blocks-security-related-domains/ |
M16-0mv01 | Triada_ebca0906 | Android | This strike sends a malware sample detected by McAfee as Artemis!EBCA0906E7FA, Kaspersky as Backdoor.AndroidOS.Triada.san, ESET-NOD32 as a variant of Android/Agent.PI. | ebca0906e7fa7a9c89b0ce748eda5651 | 2bc87579267d1c43b908c01a4687e6d24445d6f3 ebca0906e7fa7a9c89b0ce748eda5651 ca7eb78abc0b25384ace77dcf644888ef7f0f26c1e35931c0d880608a34cd420 http://www.securityweek.com/triada-trojan-most-advanced-mobile-malware-yet-kaspersky |
M16-95p01 | Parite_8a48fa5a | Windows | This strike sends a malware sample detected by McAfee as W32/Pate.b, Symantec as W32.Pinfi.B, Kaspersky as Virus.Win32.Parite.b, ESET-NOD32 as Win32/Parite.B, BitDefender as Win32.Parite.B. | 8a48fa5a5233d362ffb1e0a0eb469011 | 0b4beea0bb2c84224daebc718d2e344311ce0136 8a48fa5a5233d362ffb1e0a0eb469011 5f4282c87da3b875dd2a27eaa76753d112be137845aa1480e4bc122763ae6d6e https://www.microsoft.com/security/portal/threat/encyclopedia/entry.aspx?name=Virus%3AWin32%2FParite.B |
M16-mz201 | W97MAdnel_e722cde5 | Mixed | This strike sends a malware sample detected by McAfee as W97M/Downloader.azh, Symantec as W97M.Downloader, Kaspersky as Trojan.MSWord.Agent.cq, ESET-NOD32 as VBA/TrojanDownloader.Agent.AUO, BitDefender as w97M.Downloader.AYQ. | e722cde5555e1a74cf6bd83358d79b48 | ae03c9eafdb3fe39cdbb923323a9377ab664e5d0 e722cde5555e1a74cf6bd83358d79b48 d5d7809511c342dc0070da96145f2b6f685c36176715718870443e62f6966902 http://blog.cyren.com/articles/new-tricks-of-macro-malware.html |
M16-04t01 | DOTdo_b8c773eb | Windows | This strike sends a malware sample detected by McAfee as Artemis!B8C773EB87A0, Symantec as Trojan.Gen, Kaspersky as not-a-virus:AdWare.NSIS.Agent.fy, ESET-NOD32 as Win32/Adware.Dotdo.A, BitDefender as Adware.Agent.PVB. | b8c773eb87a0e41fc08ac983d38eaae0 | fe8b5cd09d1afc366b4f9b898ac3be8e58cfc52d b8c773eb87a0e41fc08ac983d38eaae0 8e993979934e0d2150a75186ec3512a241d66ed70d78204fa25b891d7656d9b1 https://blog.malwarebytes.org/intelligence/2016/03/adware-pup-dotdo-fastinternet-blocks-security-related-domains/ |
M16-erg01 | Retefe_d6988e27 | Windows | This strike sends a malware sample detected by McAfee as Artemis!D6988E271277, Symantec as Trojan.Zbot, Kaspersky as Trojan-PSW.Win32.Tepfer.rqgy, ESET-NOD32 as a variant of Win32/Injector.AQMO, BitDefender as Gen:Variant.Retefe.16. | d6988e2712772a9df93e7344d05c23a0 | 48f57c49926e49b38702ccd44edbcd2a3fa70552 d6988e2712772a9df93e7344d05c23a0 1732ed24c05018031b26609d8f83d0f6a1a5d30146b3ec17043f8013434fd6d4 http://countuponsecurity.com/2016/02/29/retefe-banking-trojan/ |
M16-jgk01 | W97MAdnel_654941ef | Mixed | This strike sends a malware sample detected by McAfee as W97M/Downloader.azc, Symantec as W97M.Downloader, Kaspersky as Trojan-Downloader.VBS.Agent.bgx, ESET-NOD32 as VBA/TrojanDropper.Agent.FY. | 654941efd3cef663a262365ff3eb5c62 | 47f73f57195d466d823a20abfa041574c88c47dd 654941efd3cef663a262365ff3eb5c62 4383d803daecc6550ea9ddb0b9fb361d8672003356869d0af482f94926cfbf3f http://blog.cyren.com/articles/new-tricks-of-macro-malware.html |
M16-90e01 | W97MAdnel_4e020ab7 | Mixed | This strike sends a malware sample detected by McAfee as W97M/Downloader.azc, Kaspersky as Trojan-Downloader.VBS.Agent.bgx, ESET-NOD32 as VBA/TrojanDropper.Agent.FY. | 4e020ab7b72707c4391d3070ee1c668b | e322f7736021128c612308d77dc01ccb9c757496 4e020ab7b72707c4391d3070ee1c668b 131f5616b684a31f44071e3a86a48a715dd8f8301f332dc88eff552b8f9af9a1 http://blog.cyren.com/articles/new-tricks-of-macro-malware.html |
M16-vyg01 | Triada_ae45cbd2 | Android | This strike sends a malware sample detected by Kaspersky as HEUR:Trojan.AndroidOS.Triada.b, ESET-NOD32 as a variant of Android/Triada.C, BitDefender as Android.Trojan.Triada.P. | ae45cbd2d15291f2768c40e7681074d7 | f7eb2e1a22c2c24ffc03f7c8eeeb06d4bb5f60fd ae45cbd2d15291f2768c40e7681074d7 3a58ad806c33a652528adf02ce400ec502fd57b5df943a4808ee06927adae611 http://www.securityweek.com/triada-trojan-most-advanced-mobile-malware-yet-kaspersky |
Strike ID | Malware | Platform | Info | MD5 | External References |
---|---|---|---|---|---|
M16-sa101 | Mazar_6ffdf6c2 | Mixed | This strike sends a malware sample detected by McAfee as Artemis!6FFDF6C299DA, Symantec as Android.Bankosy, Kaspersky as HEUR:Trojan-Banker.AndroidOS.Acecard.b, ESET-NOD32 as a variant of Android/Torec.C, BitDefender as Android.Trojan.SLocker.A. | 6ffdf6c299da248d6cc90019244804cd | 1cd604df6659fef63abb8adfbcaf618cfba8d10e 6ffdf6c299da248d6cc90019244804cd ac256d630594fd4335a8351b6a476af86abef72c0342df4f47f4ae0f382543ba |
M16-gj401 | Teslacrypt_3e7dfd73 | Mixed | This strike sends a malware sample detected by McAfee as GenericR-FGY!3E7DFD731BA3, Kaspersky as Trojan.Win32.Yakes.nqut, ESET-NOD32 as Win32/Filecoder.EM, BitDefender as Trojan.Downloader.JSMJ. | 3e7dfd731ba3543dbd1ef4342ef07082 | be9428793d698bb7f88502f230716019ad3fe321 3e7dfd731ba3543dbd1ef4342ef07082 e4b17cdda8ebec29dfc4e1a1f4658b2c0d552152ea5993bbfe398693945837ee |
M16-x4r01 | Locky_b39091b1 | Mixed | This strike sends a malware sample detected by McAfee as RDN/Generic.tfr, Symantec as Trojan.Cryptolocker.AF, Kaspersky as Trojan-Ransom.Win32.Locky.ai, ESET-NOD32 as a variant of Win32/Kryptik.EOGW, BitDefender as Trojan.GenericKD.3050521. | b39091b1ae870525b7c26e4c8b4658af | 0929bff19771c253ea7f8f3f7d6f1e98804e2845 b39091b1ae870525b7c26e4c8b4658af 7d69f3934be22a9bdcf0e20059d6c0a851218abe9aa07b83795c54e696be6142 |
M16-64k01 | Adwind_1a0d7059 | Mixed | This strike sends a malware sample detected by McAfee as Adwind.c!jar, Symantec as Backdoor.Adwind!g1, Kaspersky as Trojan.Java.Adwind.bj, ESET-NOD32 as a variant of Generik.GUCQPAZ. | 1a0d705973ba43f23ea157328c4e4417 | d51b8a70a518c722a198919bfc0114ad1325412e 1a0d705973ba43f23ea157328c4e4417 5c781d74dab06c30e8212a9e6f2c0ae0e78e72495b7eb4d0a1119374d66be3a4 |
M16-k1n01 | Dridex_e26b9c7a | Mixed | This strike sends a malware sample detected by McAfee as RDN/Generic.bfr, Symantec as Suspicious.Cloud.7.L, Kaspersky as Backdoor.Win32.Cridex.ay, ESET-NOD32 as a variant of Win32/Injector.CQVR, BitDefender as Gen:Variant.Zusy.178413. | e26b9c7ace5a59ad3882ae13fba0cbf5 | b824e3d3d3ef535b075ff0fbae02d2aedc7f2355 e26b9c7ace5a59ad3882ae13fba0cbf5 d15d1bf6982959840298a4f11f1c1433a2a370140e9ff41dd8ed82a060e4b38d |
M16-6j001 | Locky_b866d30d | Mixed | This strike sends a malware sample detected by McAfee as Artemis!B866D30D3FBB, Kaspersky as Trojan.Win32.Reconyc.ffje, ESET-NOD32 as a variant of Win32/Kryptik.DKHB, BitDefender as Trojan.GenericKD.3046471. | b866d30d3fbbb037926570bd02241f27 | e69d0d3ff8862348dce16210dcc0511494e306fd b866d30d3fbbb037926570bd02241f27 f56655bfbd1be9eab245dc283b7c71991881a845f3caf8fb930f7baabae51059 |
M16-ib801 | Poweliks_ea533a18 | Mixed | This strike sends a malware sample detected by McAfee as GenericR-EHJ!EA533A189816, Symantec as Trojan.Poweliks, Kaspersky as Trojan.Win32.Yakes.lkzj, ESET-NOD32 as a variant of Win32/Kryptik.DTRW, BitDefender as Gen:Variant.Kazy.763737. | ea533a189816c06d8360755b3e93e325 | def2e16a8a842d66a9fb3bf94d517d78e4ae7d9c ea533a189816c06d8360755b3e93e325 9527697e0d0601a69ea48be3ce33b7158dc74a5dc79338f137d39cea436a5844 |
M16-1ae01 | Kasidet_ff995fad | Mixed | This strike sends a malware sample detected by McAfee as RDN/Generic BackDoor, Symantec as Trojan.Kasidet, Kaspersky as Backdoor.Win32.Kasidet.bol, ESET-NOD32 as a variant of Win32/Kasidet.AB, BitDefender as Gen:Variant.Zusy.161815. | ff995fad9a4cd212c6b101a8ed679392 | ab05d883d35614f13aa7b1cc16ba66522478e833 ff995fad9a4cd212c6b101a8ed679392 1c48588f3828266a6ebbd09c84ab5c92ece9bceaf75076e9bb3d9bb6dd1f8062 |
M16-2jp01 | Kovter_9c4b110a | Mixed | This strike sends a malware sample detected by McAfee as Ransom-Tescrypt!9C4B110A046D, Symantec as Trojan.Gen, Kaspersky as HEUR:Trojan.Win32.Generic, ESET-NOD32 as Win32/Kovter.D, BitDefender as Gen:Variant.Kazy.786430. | 9c4b110a046dab5c6c23a37af072901e | 8253b00dd86de51a3e4d8519e96d21f741508fc0 9c4b110a046dab5c6c23a37af072901e 32c86bde93ff6129963a565879dfd2ac261d67759cc3e77f570c8a8f20e10c7e |
M16-hm401 | Poweliks_ccbe720f | Mixed | This strike sends a malware sample detected by Kaspersky as Trojan.Win32.Inject.verp, ESET-NOD32 as Win32/Kovter.C, BitDefender as Trojan.Poweliks.Y. | ccbe720fba8f65a8c02136eb7a2bd87f | de077e913d45bc05327a2f7e56aaa180949fe37b ccbe720fba8f65a8c02136eb7a2bd87f a38787d406d7dd28f9d590658a9e3c4fa92dba32e6afba07859477272454281b |
M16-mfk01 | KillDisk_8377ba98 | Mixed | This strike sends a malware sample detected by McAfee as Artemis!8377BA980752, Symantec as Trojan.Gen, BitDefender as Backdoor.Generic.589843. | 8377ba980752dfe947fcd2540af58900 | 4e124a88fba4766015750ecefc75ce8e2de92752 8377ba980752dfe947fcd2540af58900 8241ccf3d9ba5ba009b5ddd6a6ffaf759c45291978ec629f50d5b19e291984be |
M16-zka01 | Andromeda_2d2ae1c8 | Mixed | This strike sends a malware sample detected by McAfee as RDN/Generic.dx, Symantec as Backdoor.Trojan, Kaspersky as Backdoor.Win32.Androm.jdlq, ESET-NOD32 as Win32/TrojanDownloader.Wauchos.BD, BitDefender as Gen:Variant.Razy.15438. | 2d2ae1c8d3859315d6fa66c6891d5a8f | 1a2e64b24f37964dfe7326468ceb5832af6443d4 2d2ae1c8d3859315d6fa66c6891d5a8f f51e75146be46bcf338d35e6184a2e557719e29b184886b2e561eafa3fd46158 |
M16-lod01 | BlackEnergy_bcaf0572 | Mixed | This strike sends a malware sample detected by McAfee as FDoS-BEnergy, Kaspersky as DoS.Win32.BlackEnergy.a, ESET-NOD32 as Win32/Agent.NGC, BitDefender as Virtool.DDos.A. | bcaf057246793086e9911dd2b7762e43 | 7023d07c7292c339cb0a45b8efb195dbd0b5a676 bcaf057246793086e9911dd2b7762e43 61bea31d3587359636bc2d4c889740075df6d617e9f62df2e811707238f8856c |
M16-brq01 | DMA_Locker_4190df2a | Mixed | This strike sends a malware sample detected by McAfee as RDN/Generic.grp, Symantec as Trojan.Ransomcrypt.AA, Kaspersky as Trojan-Ransom.Win32.Blocker.iamg, ESET-NOD32 as a variant of Win32/Filecoder.DMALocker.B, BitDefender as Gen:Variant.Zusy.176978. | 4190df2af81ece296c465e245fc0caea | 2928889b268f8dfde9db94d54de39e217c4cc337 4190df2af81ece296c465e245fc0caea 8abca2cf6e2672ca406b5bdb150b14c345866281b670ae1389cc5cbeac55c8e6 |
M16-8xt01 | Kovter_cb0cedf9 | Mixed | This strike sends a malware sample detected by McAfee as Trojan-FHUE!CB0CEDF962A2, Symantec as SAPE.Heur.A8317, Kaspersky as Trojan.Win32.Kovter.ddu, ESET-NOD32 as Win32/Kovter.D, BitDefender as Gen:Variant.Symmi.60460. | cb0cedf962a23eb570bee0aade034bd5 | 33f10cc6a50bcd262404235fb03807e58a20a398 cb0cedf962a23eb570bee0aade034bd5 a8d774efb293a9d85852b3d675b2947d8c55f4332d524a2b2d644f6538a3dcbd |
M16-pvz01 | Teslacrypt3_1680835a | Mixed | This strike sends a malware sample detected by Symantec as Suspicious.Cloud.2, Kaspersky as UDS:DangerousObject.Multi.Generic. | 1680835ab6998271127b9d172cf1c691 | 6bd73edbb89d5689fa4f721b6817fa7525daa17e 1680835ab6998271127b9d172cf1c691 324bededd0b4af8af283d345f3f5b48b6f85dc43754015322c5b2f91769f94b8 |
Strike ID | Malware | Platform | Info | MD5 | External References |
---|---|---|---|---|---|
M16-frx01 | Artemis!B32EC9C68BAC | Mixed | This strike sends a malware sample detected by McAfee as 'Artemis!B32EC9C68BAC', Kaspersky as 'not-a-virus:AdWare.Win32.Amonetize.aaju', Symantec as 'WS.Reputation.1', BitDefender as 'Adware.Agent.PHZ'. | b32ec9c68bac0612c8f6dcd3ad67b284 | 453ae0c57868a9d6d766eea05927c41b3ac78ec6 b32ec9c68bac0612c8f6dcd3ad67b284 ce6141345075a84645f03a79ed53a3f9b624d9e5d0130e81fc5c11e53e7cf279 |
M16-52e01 | Artemis!ED7BDAB1E522 | Mixed | This strike sends a malware sample detected by McAfee as 'Artemis!ED7BDAB1E522', Kaspersky as 'not-a-virus:Downloader.Win32.LMN.agz', Symantec as 'Trojan.Gen.2', BitDefender as 'Trojan.GenericKD.2203820'. | ed7bdab1e52286f23be10043d88e3fd8 | cce28a0d6da2bdf2c8e6f3f170411e6c3a4ed620 ed7bdab1e52286f23be10043d88e3fd8 37718e94bde4f4ca15199ca4b3fa32bfab95d8972ac580e2ab7d10544790664a |
M16-1rp01 | Artemis!1B0D3A6C6B46 | Mixed | This strike sends a malware sample detected by McAfee as 'Artemis!1B0D3A6C6B46', Symantec as 'Trojan.Gen.2', BitDefender as 'Gen:Variant.Adware.Graftor.173198'. | 1b0d3a6c6b46fad1448030433b01e474 | 0a2131e6287aeeeb5c73f702442ffb5a84766c60 1b0d3a6c6b46fad1448030433b01e474 28c858bc544ec1368060a2ed6bc44eb4877e33c480fb917cfd6bba21912908b6 |
M16-4wb01 | APPL/Downloader.Gen-3949b234 | Mixed | This strike sends a APPL/Downloader.Gen malware sample. | 3949b23410c05cf6d3824bc126548241 | 55dfbae30d8d276e7188988453b91dc5096edf75 3949b23410c05cf6d3824bc126548241 a55a36c920529c36dda9e8c8602b7defaeb5d18b46d018493a28d025254ecc48 |
M16-7k801 | Artemis!580EAB24EB79 | Mixed | This strike sends a malware sample detected by McAfee as 'Artemis!580EAB24EB79', Symantec as 'Trojan.Gen.2', BitDefender as 'Gen:Variant.Graftor.175228'. | 580eab24eb79c5b5a2f1991e1f0999f5 | 17c3558efaa21d285bfd7a0262cfcc90b344ab7e 580eab24eb79c5b5a2f1991e1f0999f5 039d89eb25f4ba10072670615bf0dbe58455bdb399f67749b5af182995f68645 |
M16-qnq01 | WS.Reputation.1-da6f24b5 | Mixed | This strike sends a malware sample detected by Symantec as 'WS.Reputation.1'. | da6f24b529a2f4a2020f83432b491643 | a1b6d149851b599466b87a38128b6a1175c96792 da6f24b529a2f4a2020f83432b491643 f1dd9e4abac85e5161d51cf5808d79459d0142ea08487824c444f8382bd1b436 |
M16-nj501 | Artemis!CC842504CBB0 | Mixed | This strike sends a malware sample detected by McAfee as 'Artemis!CC842504CBB0', Kaspersky as 'not-a-virus:AdWare.Win32.Amonetize.aaju', Symantec as 'Trojan.Gen.2', BitDefender as 'Adware.Agent.PHZ'. | cc842504cbb09596cde7b3a0a8ca0e42 | 329925c747911048f46077d77b3198af5a44ee94 cc842504cbb09596cde7b3a0a8ca0e42 82bd4a079a80ca40fb10647c98158d10e92aba0e42daea9659e9ee532ae36983 |
M16-b4101 | Artemis!6C302CD83FAF | Mixed | This strike sends a malware sample detected by McAfee as 'Artemis!6C302CD83FAF', BitDefender as 'Gen:Variant.Mikey.10582'. | 6c302cd83faf21741cdcb507bae1c44b | 1bd3566809f809f08105a3379da18aa90d629d0c 6c302cd83faf21741cdcb507bae1c44b b15b79425324beec242196b7c7bea3d0c7c75da767804d814f126ef8327b630d |
M16-4yf01 | WS.Reputation.1-c12f86e3 | Mixed | This strike sends a malware sample detected by Symantec as 'WS.Reputation.1'. | c12f86e35af39133d1f8d6deb10948da | 07e90a50b6df47930d12b5a7cb311b924f558695 c12f86e35af39133d1f8d6deb10948da 6f33febef2b8209d68704a83288cade1ae3ffb68d1f7dc9aef6a921567852ce5 |
M16-l4001 | Artemis!553A78A91A0B | Mixed | This strike sends a malware sample detected by McAfee as 'Artemis!553A78A91A0B'. | 553a78a91a0b2a8d0caf76a5778abd61 | 0cec54e8d08513e0ba159993080525b83b079e9c 553a78a91a0b2a8d0caf76a5778abd61 98a46cc308e6521afe693422a8f2119a41cb6a8dee179407c6ff90d07beb48ba |
M16-y7o01 | SearchProtect-154d7f4d | Mixed | This strike sends a malware sample detected by Kaspersky as 'not-a-virus:WebToolbar.Win32.Agent.azm', Symantec as 'SearchProtect', BitDefender as 'Trojan.Generic.11798784'. | 154d7f4d7122d195a7c558746357e3fa | 8eeea0baff588ce7767c1aeb585c3cec2c91a2c1 154d7f4d7122d195a7c558746357e3fa 98271dae8c29723f0977911113b23c9e23210124aa4dab46e2de41b4616a8104 |
M16-0oz01 | Artemis!4F62D0493D5C | Mixed | This strike sends a malware sample detected by McAfee as 'Artemis!4F62D0493D5C', Kaspersky as 'not-a-virus:AdWare.Win32.Agent.hchs', BitDefender as 'Trojan.GenericKD.2229691'. | 4f62d0493d5c17a8c6c00f4a110a22af | 05789dc83a1dacfe710fd2234555d412baba532a 4f62d0493d5c17a8c6c00f4a110a22af 407f48d296b5160e7b57c8e3a058712f2fa60baae65ecb66bcc1cd3765f8d7a2 |
M16-48d01 | GenericR-DAL!ABB8DC4F946E | Mixed | This strike sends a malware sample detected by McAfee as 'GenericR-DAL!ABB8DC4F946E', Kaspersky as 'not-a-virus:AdWare.Win32.Amonetize.aaju', Symantec as 'WS.Reputation.1', BitDefender as 'Adware.Agent.PHZ'. | abb8dc4f946eb4333443c411dcb0e28b | bc93f454bc3b42ee448a9bc18ec6de646a5d5591 abb8dc4f946eb4333443c411dcb0e28b fed4e8355cd331015c46c65f3f4af7b25031bf958e1b6dfea3db7bc9e8642218 |
M16-lhi01 | Artemis!9C597D9C5355 | Mixed | This strike sends a malware sample detected by McAfee as 'Artemis!9C597D9C5355', Kaspersky as 'not-a-virus:RiskTool.Win32.SProtector.ds', Symantec as 'Trojan.Gen.2', BitDefender as 'Gen:Variant.Adware.Zusy.122341'. | 9c597d9c5355d4c895093337b32cbd40 | 2a2c4f2b60657124a53d1b30adc79757024e2617 9c597d9c5355d4c895093337b32cbd40 c249f18d3d27f11f79e8a2f09a5432443b1e4555e5a56a902a123a7e0daea114 |
M16-mqg01 | Artemis!20BF346D6007 | Mixed | This strike sends a malware sample detected by McAfee as 'Artemis!20BF346D6007', Symantec as 'WS.Reputation.1'. | 20bf346d6007c86506252e9415c8f1da | 159d05dbfe4e617d56c8e649d8b38a4c4e268129 20bf346d6007c86506252e9415c8f1da 7a5ccd8e556c6d6d95a0ddf2e3025f7da3af353fb05d8cdee952f3d5a6dcaed0 |
M16-zyi01 | Artemis!EF00CFB09764 | Mixed | This strike sends a malware sample detected by McAfee as 'Artemis!EF00CFB09764', Kaspersky as 'not-a-virus:AdWare.Win32.Amonetize.aaju', Symantec as 'WS.Reputation.1', BitDefender as 'Adware.Agent.PHZ'. | ef00cfb097642fdfa484f92c3c33bc52 | ca1aaea5722e77eaafd23c854f8cfb729e717271 ef00cfb097642fdfa484f92c3c33bc52 19b87d465fe9e5b63f2821017e348b86c9548a5712361c618898326697b18556 |
M16-v9i01 | Trojan.Win32.DownLoader11.dbxkeo-37211e8a | Mixed | This strike sends a Trojan.Win32.DownLoader11.dbxkeo malware sample. | 37211e8a679bcf2d02b45e8de8594cb1 | 0ccf16e82d1c53e2a795599137953bab65a6d9dd 37211e8a679bcf2d02b45e8de8594cb1 97876e837f35295885c18b24924fd637f6ff0dec89c3e74ed5991c33342cb531 |
M16-9bk01 | RDN/Generic | Mixed | This strike sends a malware sample detected by McAfee as 'RDN/Generic PUP.x!c2s', Kaspersky as 'not-a-virus:AdWare.Win32.Amonetize.aaju', Symantec as 'WS.Reputation.1', BitDefender as 'Adware.Agent.PHZ'. | ef0eabbe01a2bcad5c3167766d10d6df | c420491112684bc8abe13d14a7e38fd0663ed095 ef0eabbe01a2bcad5c3167766d10d6df f69b4f74a9c50c7915020f0bb921ce0cf21ddeb07cdca3c14fc2728389caff99 |
M16-1a401 | Artemis!CFAA262C06AE | Mixed | This strike sends a malware sample detected by McAfee as 'Artemis!CFAA262C06AE', Kaspersky as 'not-a-virus:AdWare.Win32.Amonetize.aaju', Symantec as 'WS.Reputation.1', BitDefender as 'Adware.Agent.PHZ'. | cfaa262c06ae032ce9e6f6cb66d32242 | 58ae1195163e48064e9eaaa142e3f95276ae5f52 cfaa262c06ae032ce9e6f6cb66d32242 dee8fff19c4144f02973a04cb0e2afd6932fe6523b97634827ee6318a8f52b1c |
M16-6if01 | Artemis!92E4D00F680C | Mixed | This strike sends a malware sample detected by McAfee as 'Artemis!92E4D00F680C', Microsoft as 'VirTool:Win32/DelfInject.gen!AN', Kaspersky as 'HEUR:Trojan.Win32.Generic', Symantec as 'Trojan.Gen.2', BitDefender as 'Trojan.GenericKD.2255017'. | 92e4d00f680c1a95fa5a6701e65d6eb7 | 6daf1ac61b76c8d944d169e236238ffc2c6cbc81 92e4d00f680c1a95fa5a6701e65d6eb7 cc63050dc5081bee34b956a0c102cffe7389acef5a471cabc6eb2edf5f4a3793 |
M16-sev01 | Trojan.GenericKD.2234736-32dd6d01 | Mixed | This strike sends a malware sample detected by Kaspersky as 'UDS:DangerousObject.Multi.Generic', BitDefender as 'Trojan.GenericKD.2234736'. | 32dd6d01bc43e48f46a4631008d9b356 | 4cd21a0e76308732ae0dcb35c12389dc7b09f3ae 32dd6d01bc43e48f46a4631008d9b356 c6ea6dac3654d63fb29efbadef0150023eb941749d8a87969260d040885f8301 |
M16-vo701 | TR/VB.Downloader.Gen-955594d1 | Mixed | This strike sends a TR/VB.Downloader.Gen malware sample. | 955594d1c1639347e310c6ca5c3f68af | 68bd944ee4f5da3d4371512c786315a9c191d1c3 955594d1c1639347e310c6ca5c3f68af 697c85a164662f78fabb58822d8200fb5cbe6e467451831fc8c556bbc12222ca |
M16-8l301 | Artemis!E4802C385B1A | Mixed | This strike sends a malware sample detected by McAfee as 'Artemis!E4802C385B1A', Kaspersky as 'UDS:DangerousObject.Multi.Generic'. | e4802c385b1abe8e90a9e333642586a8 | 87e5e8b97c7faa9e224510961afe8a432ef79549 e4802c385b1abe8e90a9e333642586a8 00b9e931438f7523093fb837dbbdb97d328b1b7a3685a1adac48f30139f1f755 |
M16-mqm01 | Trojan.GenericKD.2228680-837af136 | Mixed | This strike sends a malware sample detected by BitDefender as 'Trojan.GenericKD.2228680'. | 837af136347ea2f459be64bcd0529bb7 | 091aa457eb848a4e7b9e975b1bd384774562caab 837af136347ea2f459be64bcd0529bb7 634e0f2a3e841b9955bc33f41896b6687acbf98c55e7fbff9fb1f8078030c5c5 |
M16-qa301 | Artemis!BBD4A6D878FF | Mixed | This strike sends a malware sample detected by McAfee as 'Artemis!BBD4A6D878FF', Symantec as 'WS.Reputation.1'. | bbd4a6d878ff7dc72b38301ef505ebb9 | 87128c07ac2756c575d3ad553a34b2c48098427c bbd4a6d878ff7dc72b38301ef505ebb9 1a28d0b4c065c906e1c02a442c16012248e4e150d85afe77f6f0b5c603fccd83 |
M16-zr301 | Artemis!882DFB055980 | Mixed | This strike sends a malware sample detected by McAfee as 'Artemis!882DFB055980', Kaspersky as 'HEUR:Trojan.Win32.Generic', Symantec as 'WS.Reputation.1', BitDefender as 'DeepScan:Generic.Malware.FPPkg.0E494808'. | 882dfb05598011069f16ea40a33cd982 | 60a95538d91c38507016b48b020b72ff1a36b940 882dfb05598011069f16ea40a33cd982 63447e86cf2cbb40a579a11cb5b95c5b818da7defe435c125c7f288abea6c54e |
M16-t0s01 | Win32/LiMo.C-92d5a151 | Mixed | This strike sends a Win32/LiMo.C malware sample. | 92d5a15129b3dfd86d3501ebfa68298a | 4dab043bed36c817f0c7674040ee126aa65cebd8 92d5a15129b3dfd86d3501ebfa68298a 48b4a93e2be9dfd49053620aecda53c74b231734ca36346acb4f677c00fc9c6b |
M16-fvc01 | RDN/Generic.bfr!ic-4bd11726 | Mixed | This strike sends a malware sample detected by McAfee as 'RDN/Generic.bfr!ic', Kaspersky as 'Trojan-Downloader.Win32.VB.bkvr', Symantec as 'Trojan.Gen.2', BitDefender as 'Trojan.Generic.11581636'. | 4bd11726c4ff69e07f9f00647a800b0b | ef3de832d68756341f30d94e8886f12a7343c841 4bd11726c4ff69e07f9f00647a800b0b 44bcaa837feadbd9996271a68331cdd48aa073473585351477b364de6c27ec8f |
M16-fa801 | Gen:Variant.Kazy.577802-edf866db | Mixed | This strike sends a malware sample detected by BitDefender as 'Gen:Variant.Kazy.577802'. | edf866dbcb7bc1dc2c916e69a5ce3596 | 8d8a8711e349dc8829a3cba1a117f532e2009958 edf866dbcb7bc1dc2c916e69a5ce3596 bc0eec67a9ce118a5acf0e2383ee6f5856588a746854639660a9d4abc37f6595 |
M16-0l501 | Win32/Somoto.G-0d8d8dae | Mixed | This strike sends a Win32/Somoto.G malware sample detected by Kaspersky as 'not-a-virus:Downloader.Win32.Somato.g'. | 0d8d8daebaebbc90d736cace70531270 | 9edee8dfd0c91cc7820de5865c2a745bc1c01f6a 0d8d8daebaebbc90d736cace70531270 7761d55511a80fcbc92efd7df92498e7a30be5d6a6da262f0355d67aed9573cf |
M16-doz01 | ModPOS | Mixed | This strike sends a ModPOS malware sample. | aba833d11679dfebc95060bd3c557853 | 0f08db28d255f79e571f7f095fca6d84d9845a28 aba833d11679dfebc95060bd3c557853 665f18abdac30d264f2789877902d1aeb6765abd713f028529f65ad500dfb1fe |
M16-qvg01 | RDN/Generic.dx!dkd-f8201ee2 | Mixed | This strike sends a malware sample detected by McAfee as 'RDN/Generic.dx!dkd', Symantec as 'SoftwareVersionUpdater', BitDefender as 'Gen:Variant.Graftor.179369'. | f8201ee2d4de6ed0e75098ebfbee537c | 9124ef5b0961d51bd82d2a8be2b286aa78ee3732 f8201ee2d4de6ed0e75098ebfbee537c 564436fdcfa2553ceeccdb41c8d0bfd734a25aafe3d6fe8e333e87647193ee57 |
M16-uvh01 | Artemis!E73294936D5B | Mixed | This strike sends a malware sample detected by McAfee as 'Artemis!E73294936D5B', Symantec as 'Trojan.Dropper', BitDefender as 'Gen:Variant.Adware.Symmi.8856'. | e73294936d5be31f1e9fc214f8842915 | 1a51cdbd2da2f3961abb02c52daa74b78215651b e73294936d5be31f1e9fc214f8842915 d44c73cdb1f63a3bb8859d2a57eff098477e2e09dec8620b9ffdfd44fe425f18 |
M16-swy01 | RiskWare.Yantai.A-aeddaa34 | Mixed | This strike sends a RiskWare.Yantai.A malware sample. | aeddaa34776994aebace5150e57d6234 | 0a98a41ed9f90f88ad108d01136a48bc8fc4fac8 aeddaa34776994aebace5150e57d6234 d29572523564d63483b59b047efafcc91129e6ecc569d3ae7ba6eee167c74026 |
M16-8vp01 | APPL/DownloadAdmin.P-549fb2ba | Mixed | This strike sends a APPL/DownloadAdmin.P malware sample. | 549fb2bad20d66a9091eadfc86401b76 | 9bf6fecd3b54e2d528c5bec1b68ede919b9b89f9 549fb2bad20d66a9091eadfc86401b76 a01dce16cfd79b1a14cd0d916ff413626e940cca1e14839d163a096a97803cf2 |
M16-my001 | Win32/Kryptik.DCAH-64cda632 | Mixed | This strike sends a Win32/Kryptik.DCAH malware sample detected by Kaspersky as 'UDS:DangerousObject.Multi.Generic'. | 64cda632778ad3402deaf4ae0b1cf34e | fa8d015995b14a98250f653a239f45f560a9552b 64cda632778ad3402deaf4ae0b1cf34e cadfe2d04eca1413ed970b3dca6ff4d0311e20a8188e12b2f3cf020a56cf3cc4 |
M16-tst01 | HEUR-Trojan-Downloader.Win32.Generic-f4ffa10a | Mixed | This strike sends a HEUR-Trojan-Downloader.Win32.Generic malware sample detected by Kaspersky as 'HEUR:Trojan-Downloader.Win32.Generic'. | f4ffa10a9b669bcd1da270465f934278 | 28ad7cfd437d2fb18b1c30c6995b7c0001d08f1f f4ffa10a9b669bcd1da270465f934278 3ff2c6f5b31499e13dc3f647db633284e3fdd615bfcc9cfaa01584de0debe495 |
M16-f0n01 | DriverUpdate-SlimwareUtil-d089d756 | Mixed | This strike sends a DriverUpdate-SlimwareUtil malware sample. | d089d7563355cd8f707ed21da50bf5a3 | 978291f332e103fdf34a4d493295927b10ce5c0a d089d7563355cd8f707ed21da50bf5a3 20465e83654a300eeebe5c729af1e9abfbe0f053c602b67e4911a5ee90fb5b94 |
M16-tch01 | Artemis!88E8D9F07BF1 | Mixed | This strike sends a malware sample detected by McAfee as 'Artemis!88E8D9F07BF1', Kaspersky as 'not-a-virus:Downloader.Win32.AdLoad.qvda', Symantec as 'Trojan.Gen.2', BitDefender as 'Trojan.GenericKD.2233703'. | 88e8d9f07bf143535da1f0d1bfaaaa5b | 957ee64a90bf7dd9ba58b7b67aa613061623c4ef 88e8d9f07bf143535da1f0d1bfaaaa5b 1b3b8caf3536c74c471221d09adb8b78c41b6669e270b991ffbdd687fd86a9e6 |
M16-5n801 | WS.Reputation.1-a37122e4 | Mixed | This strike sends a malware sample detected by Symantec as 'WS.Reputation.1'. | a37122e4c7f4737a3b1d8ea9324e9185 | a8d29d724d40811320ece3c6c24865b262a90bd9 a37122e4c7f4737a3b1d8ea9324e9185 a9c91c4f22d70fa6229e2b225a0a8f418c93977f1a4cfcb89fc4ac5b52a02bf7 |
M16-fv701 | Trojan-Downloader.MSIL.Agent.jdx-d92dbd45 | Mixed | This strike sends a malware sample detected by Kaspersky as 'Trojan-Downloader.MSIL.Agent.jdx', BitDefender as 'Trojan.GenericKD.2234128'. | d92dbd45b4591ef148ee20b732ad631f | 3bbe250239f489a8bae3a33127600d5217709adc d92dbd45b4591ef148ee20b732ad631f e97076c7df4255362f0561637e2bae000abce38ea9467fd0d455a6f59c40b8d0 |
M16-z3201 | Rovnix | Mixed | This strike sends a Rovnix malware sample. | f9445c48073f5e8c12722806cb8dd810 | abf0b25bb221fddb43737471deec5da888e74be1 f9445c48073f5e8c12722806cb8dd810 be453a9a32da5f4eb1ff483b57010e59e920eeb89457fd23dd18b8b988d22865 |
M16-mf301 | RDN/Generic | Mixed | This strike sends a malware sample detected by McAfee as 'RDN/Generic Downloader.x!mp', Kaspersky as 'not-a-virus:Downloader.NSIS.OutBrowse.bm', Symantec as 'Trojan.Gen.2', BitDefender as 'Gen:Variant.Application.Bundler.Outbrowse.1'. | f0ab8a96ca19fc515bc20f7b64c41b23 | bb3857c9eed012b370115a5054743aa6440f0a62 f0ab8a96ca19fc515bc20f7b64c41b23 50053828fb3e13a7f606c3c4b3983542c034903a4102971e1d618a22ae0c61e6 |
M16-iqc01 | Win32/DriverBoss.B-342b5354 | Mixed | This strike sends a Win32/DriverBoss.B malware sample. | 342b5354c7c733365d906bf69130acb9 | 40c7b2ff9b5de9dc99cad7631024ab79ff8b9351 342b5354c7c733365d906bf69130acb9 920441970fac20a3142d12661369cd767fe0598355ec48d9dd7171954a424df5 |
M16-3u801 | BackDoor-NJRat!DE61A14918A3 | Mixed | This strike sends a malware sample detected by McAfee as 'BackDoor-NJRat!DE61A14918A3', Microsoft as 'Backdoor:MSIL/Bladabindi.AJ', Kaspersky as 'HEUR:Trojan.Win32.Generic', Symantec as 'Backdoor.Ratenjay', BitDefender as 'Gen:Variant.Barys.7801'. | de61a14918a34876efe6c7085bcd8b7c | f574a712a0e3ccd559768ed815e9391868ca6dd5 de61a14918a34876efe6c7085bcd8b7c 71face0bad8e3a607c0b5a2f41b26f436eba505408aedfbf48d2dec32238c0c9 |
M16-7o701 | GenericR-DEV!D01E9B5294F0 | Mixed | This strike sends a malware sample detected by McAfee as 'GenericR-DEV!D01E9B5294F0', Kaspersky as 'Trojan-Banker.Win32.Bancos.xdg', Symantec as 'Trojan.Gen.2', BitDefender as 'Gen:Variant.Symmi.41604'. | d01e9b5294f09bbf5d7e941c967960e8 | 9aa3d71a8988f4b1228b0832e766f628f32e3c29 d01e9b5294f09bbf5d7e941c967960e8 1213a4f2dbbf0525a7810646b227824742d85b83073cdc60c9fd6c597a39b9b6 |
M16-myx01 | Artemis!0D6150E97F30 | Mixed | This strike sends a malware sample detected by McAfee as 'Artemis!0D6150E97F30', Kaspersky as 'not-a-virus:RiskTool.Win32.SProtector.ds', Symantec as 'Trojan.Gen.2', BitDefender as 'Gen:Variant.Adware.Zusy.122341'. | 0d6150e97f30a64c539f072c9260707a | 73c6358b000a485f88424172f033c4f2864b37a3 0d6150e97f30a64c539f072c9260707a 0978490dd2619c131bbd85abc0113456575dc135f88a8e7f960c7d6885fc71af |
M16-m5p01 | GenericR-DAL!B405389CE9E5 | Mixed | This strike sends a malware sample detected by McAfee as 'GenericR-DAL!B405389CE9E5', Kaspersky as 'not-a-virus:AdWare.Win32.Amonetize.aaju', Symantec as 'WS.Reputation.1', BitDefender as 'Adware.Agent.PHZ'. | b405389ce9e5a12c2e2d1d4f1f5c0a08 | 17b5ae9069f9ed754d0482bd85f2496d673d27d8 b405389ce9e5a12c2e2d1d4f1f5c0a08 26cf4c5a071525bda19dcd8ade300a4ed920cf4b094397806e902870dd6b2c35 |
M16-3ca01 | Win32/Injector.Autoit.ADH-bca57cdd | Mixed | This strike sends a malware Win32/Injector.Autoit.ADH sample. | bca57cdd4f65a9c514a71401203fd4a0 | dabd54d391ebc4accf6bd0b3eed2598ebbd7e624 bca57cdd4f65a9c514a71401203fd4a0 c9166012582edc480ddf8854c27e79f1b584b769d3a3cbf8da3af1350d3a08c2 |
M16-yh601 | Trojan.Win32.Generic.cthmqk-70fcdd17 | Mixed | This strike sends a Trojan.Win32.Generic.cthmqk malware sample. | 70fcdd17548842ad12870e0f2bd0f354 | 763b34f6075df36317c1783c8fa7ac76d34f0771 70fcdd17548842ad12870e0f2bd0f354 6f3b431872e2c1ae5bd79a5ab5f03bae97e1fba7e912e161ace4b9260a7b3f8b |
M16-c6x01 | Artemis!B71EBF3CEFFB | Mixed | This strike sends a malware sample detected by McAfee as 'Artemis!B71EBF3CEFFB', Kaspersky as 'not-a-virus:AdWare.Win32.Amonetize.aaju', Symantec as 'PUA.Gen.2', BitDefender as 'Adware.Agent.PHZ'. | b71ebf3ceffb2cfc70e12c4ebc5aacb0 | ad9bdb37f80cac6fa555dddbb6c8b633111e8ae1 b71ebf3ceffb2cfc70e12c4ebc5aacb0 a9e23f911ea613a3c16a0078afb7979fbcbc7b6340972d80010f2a1131554ca0 |
M16-9r701 | Downloadadmin-693ffcf4 | Mixed | This strike sends a Downloadadmin malware sample. | 693ffcf4ec6e9df5a8a3748ef162a37d | b82baa74c9ef269e4dc721df658230cd9ee54107 693ffcf4ec6e9df5a8a3748ef162a37d 7e52b09e269b8983ac3ca171f355a676c9d7026f9544d097bdf5f17c1a05f940 |