Trend graph by period


Related keyword cloud
Top 100

# Trend Count Comparison
1screenshot 3 ▲ 2 (67%)
2fc18b0a28b4bba428cb63e8c9432f8dbae758cb816e3324685c0371562bbb30 1 ▲ new
3httpstcoEXnC 1 ▲ new
4thorscanner 1 ▲ new
5h4rmsw4yX 1 ▲ new
6above 1 ▲ new
7content 1 ▲ new
8Advertising 1 ▲ new
9DevMan 1 ▲ new
10Ransom 1 ▲ new
11portal 1 ▲ new
Special keyword group
Top 5

Malware Type
Malware Type

This is the type of malware that is becoming an issue.


No data.

Attacker & Actors
Attacker & Actors

The status of the attacker or attack group being issued.


No data.

Attack technique
Technique

This is an attack technique that is becoming an issue.


No data.

Country & Company
Country & Company

This is a country or company that is an issue.


No data.

Additional information

Level Description
danger File has been identified by 33 AntiVirus engines on VirusTotal as malicious
watch Attempts to stop active services
watch Creates known SpyNet files
watch Resumed a suspended thread in a remote process potentially indicative of process injection
notice Allocates read-write-execute memory (usually to unpack itself)
notice Checks for the Locally Unique Identifier on the system for a suspicious privilege
notice Creates a suspicious process
notice Creates executable files on the filesystem
notice Drops a binary and executes it
notice Drops an executable to the user AppData folder
notice Executes one or more WMI queries
notice The binary likely contains encrypted or compressed data indicative of a packer
notice Uses Windows utilities for basic Windows functionality
notice Yara rule detected in process memory
info Checks amount of memory in system
info Command line console output was observed
info One or more processes crashed
info Queries for the computername
info The executable contains unknown PE section names indicative of a packer (could be a false positive)
No data
No data
Beta Service, If you select keyword, you can check detailed information.