3423 samples analysed
1215 / 3423 malicious
1546 / 3423 suspicious
662 / 3423 clean
C2 Countries :: Malware observatory
Sample types :: Submitted-overall
File types :: Submitted-overall
Samples :: Now-10
Scan0007_New Orders.doc 7.6
mCtrl.dll 1.6
GKGateway.exe 6.4
GKGateway.rar 0.5
filename.pdf 2.6
spot.rtf 0.0
Force OP.exe 10.0
malware.js 10.0
Endesa contract.jpg 0.0
img_6073.pdf 10.0
TLS Subjects :: Now-15
C=US, ST=California, L=Mountain ... 11
C=US, ST=California, L=Mountain ... 9
C=US, ST=California, L=Mountain ... 5
C=US, ST=WA, L=Redmond, O=Micros... 4
C=US, ST=WA, L=Redmond, O=Micros... 4
CN=*.vo.msecnd.net 3
C=US, ST=North Carolina, L=Salis... 3
C=US, ST=California, L=Mountain ... 3
C=NL, ST=NETHERLANDS, L=Amsterda... 2
C=US, unknown=94065, ST=CALIFORN... 2
C=US, ST=California, L=Mountain ... 2
serialNumber=I/NLylLN/RFXXDCnJI1... 2
C=--, ST=SomeState, L=SomeCity, ... 2
C=US, ST=California, L=San Jose,... 2
C=NL, ST=Netherlands, L=Amsterda... 2
TLS Versions
Http Methods
Callbacks :: Now-15
Malware :: Now-15
Locky 30
Nemucod 27
Duqu 21
Bladabindi 20
Bitcoinminer 19
Linux 17
Adware 15
Remvio 12
Agent 11
Fareit 11
Cerber 10
Upatre 10
Advml 9
Donoff 8
Adwind 7
DNS Requests :: Now-15
Alerts :: Now-15
ET POLICY PE EXE or DLL Windows file ...
ET POLICY Dropbox Client Broadcasting
SURICATA IPv4 invalid checksum
ET POLICY Unsupported/Fake Windows NT...
ET POLICY Outdated Windows Flash Vers...
ET TROJAN Java EXE Download by Vulner...
ET POLICY Java EXE Download
ET TROJAN Trojan Generic - POST To ga...
ET TROJAN Fareit/Pony Downloader Chec...
ET CURRENT_EVENTS DRIVEBY PDF Contain...
ET POLICY Unsupported/Fake Internet E...
ET POLICY Vulnerable Java Version 1.6...
ET TROJAN Generic - POST To .php w/Ex...
ET POLICY Windows 98 User-Agent Detec...
ET TROJAN Possible Zeus GameOver Conn...
Attack Categories :: Now-15
A Network Trojan was d...
Potential Corporate Pr...
Potentially Bad Traffic
Attempted User Privile...
Attempted Information ...
Generic Protocol Comma...
Misc Attack
Executable code was de...
Misc activity
Web Application Attack
Successful User Privil...
Attempted Administrato...