VB-May2014.indd
Image Description
Common Information
Type Value
UUID 5842116f-8455-42ee-8e11-1e1ff3aa6b04
Fingerprint 8f768719a6496dc8fea759149fd265c357f063e02f0872acf13632a8da85dba7
Analysis status DONE
Considered CTI value 0
Text language
Published May 1, 2014, 11:19 a.m.
Added to db April 16, 2024, 3:03 p.m.
Last updated Aug. 30, 2024, 11:06 p.m.
Headline VB-May2014.indd
Title VB-May2014.indd
Detected Hints/Tags/Attributes 212/4/229
Attributes
Details Type #Events CTI Value
Details Domain 337
virusbtn.com
Details Domain 404
www.virusbtn.com
Details Domain 80
www.eset.com
Details Domain 33
groups.google.com
Details Domain 23
www.gov.uk
Details Domain 12
blog.gdatasoftware.com
Details Domain 2
www.sinister.ly
Details Domain 45
www.securelist.com
Details Domain 61
seclists.org
Details Domain 4128
github.com
Details Domain 212
technet.microsoft.com
Details Domain 14
www.coresecurity.com
Details Domain 201
msdn.microsoft.com
Details Domain 2
doxygen.reactos.org
Details Domain 5
j00ru.vexillium.org
Details Domain 24
www.virtualbox.org
Details Domain 1
technews.acm.org
Details Domain 1
discovere.binghamton.edu
Details Domain 15
conference.auscert.org.au
Details Domain 8
www.sapphire.net
Details Domain 4
2014.caro.org
Details Domain 44
www.sourceconference.com
Details Domain 19
www.smi-online.co.uk
Details Domain 56
www.maawg.org
Details Domain 1
cccc-2014.com
Details Domain 169
www.first.org
Details Domain 8
www.hackinparis.com
Details Domain 222
www.blackhat.com
Details Domain 39
www.defcon.org
Details Domain 2
44con.com
Details Domain 5
congress.isc2.org
Details Domain 10
www.isse.eu.com
Details Domain 3
www.avar2014.com
Details Domain 17
www.botconf.eu
Details Email 3
nick@virusbtn.com
Details Email 330
editorial@virusbtn.com
Details Email 55
conference@virusbtn.com
Details File 9
c:\windows\system32\wuauclt.exe
Details File 1260
explorer.exe
Details File 533
ntdll.dll
Details File 1
jnmhzdjtt.exe
Details File 1
%commonprogramfiles%\nvv svc\rjmynangs.exe
Details File 1
%commonprogramfiles%\winsys\nrmhzdjtb.exe
Details File 1
jwvzdqgtr.exe
Details File 10
order.php
Details File 2
bot-on-the-market-beta-bot.html
Details File 115
win32k.sys
Details File 11
vboxdrv.sys
Details File 1
notskrnl.exe
Details File 1
software-with-russian-roots.html
Details File 1
015_kitrap0d.rb
Details File 37
www.core
Details File 13
85%29.aspx
Details File 1
abb452c5cb69c4b54934c086b84a6447a.html
Details File 1
a2acc.sys
Details File 1
a2acc64.sys
Details File 1
64.sys
Details File 1
a2gffx64.sys
Details File 1
a2gffx86.sys
Details File 1
t2k.sys
Details File 1
ahnrec2k.sys
Details File 1
ahnrghlh.sys
Details File 1
amfsm.sys
Details File 1
amm6460.sys
Details File 1
amm8660.sys
Details File 1
antileakfilter.sys
Details File 1
lter.sys
Details File 1
antiyfw.sys
Details File 1
arfmonnt.sys
Details File 1
ashavscan.sys
Details File 3
t.sys
Details File 1
aszfltnt.sys
Details File 1
atamptnt.sys
Details File 1
avc3.sys
Details File 1
avckf.sys
Details File 1
avgmfrs.sys
Details File 1
avgmfx64.sys
Details File 1
avgmfx86.sys
Details File 1
avmf.sys
Details File 1
bdfilespy.sys
Details File 1
bdfm.sys
Details File 1
tr.sys
Details File 1
caavfltr.sys
Details File 2
cmdguard.sys
Details File 1
csaav.sys
Details File 1
cwdriver.sys
Details File 1
lterdriver2lite.sys
Details File 2
dwprot.sys
Details File 3
eamonm.sys
Details File 1
eectrl.sys
Details File 1
eeyehv.sys
Details File 1
eeyehv64.sys
Details File 1
eraser.sys
Details File 1
estrkmon.sys
Details File 1
estrkr.sys
Details File 1
ldds.sys
Details File 1
fortimon2.sys
Details File 1
fortirmon.sys
Details File 1
fortishield.sys
Details File 1
fpav_rtp.sys
Details File 1
fsgk.sys
Details File 2
ggc.sys
Details File 1
hookcentre.sys
Details File 1
hooksys.sys
Details File 1
lesec.sys
Details File 1
issregistry.sys
Details File 2
k7sentry.sys
Details File 1
klbg.sys
Details File 1
kldback.sys
Details File 1
kldlinf.sys
Details File 1
kldtool.sys
Details File 14
klif.sys
Details File 1
kmxagent.sys
Details File 1
kmxamrt.sys
Details File 1
kmxamvet.sys
Details File 1
kmxstart.sys
Details File 4
kprocesshacker.sys
Details File 1
lbd.sys
Details File 1
maxprotector.sys
Details File 2
mbam.sys
Details File 2
mfehidk.sys
Details File 1
mfencoas.sys
Details File 1
miniicpt.sys
Details File 1
mpfilter.sys
Details File 1
nanoavmf.sys
Details File 1
novashield.sys
Details File 1
nprosec.sys
Details File 1
nregsec.sys
Details File 1
nxfsmon.sys
Details File 1
oadevice.sys
Details File 1
omfltlh.sys
Details File 1
pctcore.sys
Details File 1
pctcore64.sys
Details File 1
pervac.sys
Details File 1
pkticpt.sys
Details File 1
plgfltr.sys
Details File 2
psinfile.sys
Details File 1
psinproc.sys
Details File 2
pwipf6.sys
Details File 1
pzdrvxp.sys
Details File 1
rtw.sys
Details File 1
rvsmon.sys
Details File 1
sascan.sys
Details File 1
savant.sys
Details File 1
savonaccess.sys
Details File 1
scfltr.sys
Details File 2
sdactmon.sys
Details File 1
segf.sys
Details File 1
smdrvnt.sys
Details File 1
snscore.sys
Details File 1
spiderg3.sys
Details File 2
srtsp.sys
Details File 9
srtsp64.sys
Details File 1
srtspit.sys
Details File 1
ssfmonm.sys
Details File 1
ssvhook.sys
Details File 1
stkrnl64.sys
Details File 1
strapvista.sys
Details File 1
strapvista64.sys
Details File 1
thfilter.sys
Details File 1
tkfsavxp.sys
Details File 1
tkfsavxp64.sys
Details File 1
tkfsft.sys
Details File 1
tkfsft64.sys
Details File 1
tmevtmgr.sys
Details File 1
ufdfilter.sys
Details File 1
v3engine.sys
Details File 1
v3flt2k.sys
Details File 1
v3flu2k.sys
Details File 1
v3ift2k.sys
Details File 1
v3iftmnt.sys
Details File 1
nt.sys
Details File 1
vba32dnt.sys
Details File 1
vcdriv.sys
Details File 1
vchle.sys
Details File 1
vcmfilter.sys
Details File 1
vcreg.sys
Details File 1
l2.sys
Details File 1
zxfsfilt.sys
Details File 120
boot.ini
Details File 3
201404.pdf
Details File 75
favicon.ico
Details File 1
archives.cfm
Details File 1
apr-14-2014.html
Details File 1
discovere.bin
Details File 1
moat-5687.html
Details Github username 46
rapid7
Details IPv4 1441
127.0.0.1
Details Pdb 2
win32k.pdb
Details Url 1
http://www.virusbtn.com/virusbulletin/archive/2014/04/vb201404-
Details Url 1
http://www.eset.com/us/threat-center/encyclopedia/threats
Details Url 1
https://groups.google.com/forum/#!topic/alt.comp.anti
Details Url 1
https://www.gov.uk/government/publications/information-
Details Url 10
https://www.virusbtn.com/virusbulletin
Details Url 1
https://blog.gdatasoftware.com/blog/article/a-new-
Details Url 1
https://www.sinister.ly/thread-120-beta-bot-
Details Url 1
https://blog.gdatasoftware.com
Details Url 1
http://www.securelist.com/en/blog/208193568
Details Url 1
http://seclists.org/fulldisclosure/2010
Details Url 5
https://github.com/rapid7/metasploit-framework
Details Url 1
http://technet.microsoft.com/en-us/security/bulletin
Details Url 1
http://www.coresecurity.com/content/virtualbox-
Details Url 4
http://msdn.microsoft.com/en-us/library/windows
Details Url 1
http://doxygen.reactos.org/d9
Details Url 1
http://j00ru.vexillium.org
Details Url 1
https://www.virtualbox.org/wiki/download_old_
Details Url 290
http://www.virusbtn.com
Details Url 1
http://technews.acm.org/archives.cfm?fo=2014
Details Url 1
http://discovere.binghamton.edu/student-spotlights
Details Url 138
http://www.virusbtn.com/virusbulletin/subscriptions
Details Url 14
http://conference.auscert.org.au/.
Details Url 8
http://www.sapphire.net/nisc-2014/.
Details Url 4
http://2014.caro.org/.
Details Url 7
http://www.sourceconference.com/dublin/.
Details Url 4
http://www.smi-online.co.uk/energy/europe
Details Url 2
http://www.maawg.org/events
Details Url 1
http://cccc-2014.com/.
Details Url 7
http://www.first.org/conference/2014.
Details Url 4
http://www.hackinparis.com/.
Details Url 134
http://www.blackhat.com/.
Details Url 7
https://www.defcon.org/.
Details Url 2
http://44con.com/.
Details Url 29
http://www.virusbtn.com/conference
Details Url 5
https://congress.isc2.org/.
Details Url 10
http://www.isse.eu.com/.
Details Url 7
http://www.maawg.org
Details Url 3
http://www.avar2014.com/.
Details Url 7
https://www.botconf.eu/.
Details Url 3
http://www.virusbtn.com/conference/vb2015