Cryptam


Recent document malware detections. This list is delayed by 5 days.

MD5filenamesizeseverityhas_exekey_lenrol
0dd8fb3a992f436c53878bbfd0cf57e9 view report cs_go_d3m.zip 357950 100 X 0 0
embedded.file cs_go_d3m.zip 8479937aa2c20237c995db64782a84eb
cs_go_d3m.zip.embedded.file cs_go_d3m.exe 70e15db02e5836983c92a7204bc40fe8
cs_go_d3m.zip.cs_go_d3m.exe.78: string.This program cannot be run in DOS mode
cs_go_d3m.zip.cs_go_d3m.exe.59032: string.LoadLibraryA
cs_go_d3m.zip.cs_go_d3m.exe.58338: string.GetModuleHandleA
cs_go_d3m.zip.cs_go_d3m.exe.58536: string.GetCommandLineA
cs_go_d3m.zip.cs_go_d3m.exe.58582: string.GetProcAddress
cs_go_d3m.zip.cs_go_d3m.exe.58380: string.CloseHandle
cs_go_d3m.zip.cs_go_d3m.exe.58942: string.CreateFileA
cs_go_d3m.zip.cs_go_d3m.exe.57264: string.user32.dll
cs_go_d3m.zip.cs_go_d3m.exe.56428: string.KERNEL32
cs_go_d3m.zip.cs_go_d3m.exe.58568: string.ExitProcess
1d4ff4b9a3be35b333601798fc59ae6d view report cs_go_d3m.zip 358129 100 X 0 0
embedded.file cs_go_d3m.zip 0dd8fb3a992f436c53878bbfd0cf57e9
cs_go_d3m.zip.embedded.file cs_go_d3m.zip 8479937aa2c20237c995db64782a84eb
cs_go_d3m.zip.cs_go_d3m.zip.embedded.file cs_go_d3m.exe 70e15db02e5836983c92a7204bc40fe8
cs_go_d3m.zip.cs_go_d3m.zip.cs_go_d3m.exe.78: string.This program cannot be run in DOS mode
cs_go_d3m.zip.cs_go_d3m.zip.cs_go_d3m.exe.59032: string.LoadLibraryA
cs_go_d3m.zip.cs_go_d3m.zip.cs_go_d3m.exe.58338: string.GetModuleHandleA
cs_go_d3m.zip.cs_go_d3m.zip.cs_go_d3m.exe.58536: string.GetCommandLineA
cs_go_d3m.zip.cs_go_d3m.zip.cs_go_d3m.exe.58582: string.GetProcAddress
cs_go_d3m.zip.cs_go_d3m.zip.cs_go_d3m.exe.58380: string.CloseHandle
cs_go_d3m.zip.cs_go_d3m.zip.cs_go_d3m.exe.58942: string.CreateFileA
cs_go_d3m.zip.cs_go_d3m.zip.cs_go_d3m.exe.57264: string.user32.dll
cs_go_d3m.zip.cs_go_d3m.zip.cs_go_d3m.exe.56428: string.KERNEL32
cs_go_d3m.zip.cs_go_d3m.zip.cs_go_d3m.exe.58568: string.ExitProcess
8479937aa2c20237c995db64782a84eb view report cs_go_d3m.zip 359093 100 X 0 0
embedded.file cs_go_d3m.exe 70e15db02e5836983c92a7204bc40fe8
cs_go_d3m.exe.78: string.This program cannot be run in DOS mode
cs_go_d3m.exe.59032: string.LoadLibraryA
cs_go_d3m.exe.58338: string.GetModuleHandleA
cs_go_d3m.exe.58536: string.GetCommandLineA
cs_go_d3m.exe.58582: string.GetProcAddress
cs_go_d3m.exe.58380: string.CloseHandle
cs_go_d3m.exe.58942: string.CreateFileA
cs_go_d3m.exe.57264: string.user32.dll
cs_go_d3m.exe.56428: string.KERNEL32
cs_go_d3m.exe.58568: string.ExitProcess
caab4a4fd7fe3ea937d8f0396d57882d view report key_1.zip 359083 100 X 0 0
embedded.file key_1.exe 584e5f63380548ceb57a20644aba263a
key_1.exe.78: string.This program cannot be run in DOS mode
key_1.exe.59032: string.LoadLibraryA
key_1.exe.58338: string.GetModuleHandleA
key_1.exe.58536: string.GetCommandLineA
key_1.exe.58582: string.GetProcAddress
key_1.exe.58380: string.CloseHandle
key_1.exe.58942: string.CreateFileA
key_1.exe.57264: string.user32.dll
key_1.exe.56428: string.KERNEL32
key_1.exe.58568: string.ExitProcess
21a66c4912ce58c72289622a9e061a3f view report key_1.zip 358071 100 X 0 0
embedded.file key_1.zip 7696b53af454aed72ac2ba0a5df57041
key_1.zip.embedded.file key_1.zip caab4a4fd7fe3ea937d8f0396d57882d
key_1.zip.key_1.zip.embedded.file key_1.exe 584e5f63380548ceb57a20644aba263a
key_1.zip.key_1.zip.key_1.exe.78: string.This program cannot be run in DOS mode
key_1.zip.key_1.zip.key_1.exe.59032: string.LoadLibraryA
key_1.zip.key_1.zip.key_1.exe.58338: string.GetModuleHandleA
key_1.zip.key_1.zip.key_1.exe.58536: string.GetCommandLineA
key_1.zip.key_1.zip.key_1.exe.58582: string.GetProcAddress
key_1.zip.key_1.zip.key_1.exe.58380: string.CloseHandle
key_1.zip.key_1.zip.key_1.exe.58942: string.CreateFileA
key_1.zip.key_1.zip.key_1.exe.57264: string.user32.dll
key_1.zip.key_1.zip.key_1.exe.56428: string.KERNEL32
key_1.zip.key_1.zip.key_1.exe.58568: string.ExitProcess
7696b53af454aed72ac2ba0a5df57041 view report key_1.zip 357900 100 X 0 0
embedded.file key_1.zip caab4a4fd7fe3ea937d8f0396d57882d
key_1.zip.embedded.file key_1.exe 584e5f63380548ceb57a20644aba263a
key_1.zip.key_1.exe.78: string.This program cannot be run in DOS mode
key_1.zip.key_1.exe.59032: string.LoadLibraryA
key_1.zip.key_1.exe.58338: string.GetModuleHandleA
key_1.zip.key_1.exe.58536: string.GetCommandLineA
key_1.zip.key_1.exe.58582: string.GetProcAddress
key_1.zip.key_1.exe.58380: string.CloseHandle
key_1.zip.key_1.exe.58942: string.CreateFileA
key_1.zip.key_1.exe.57264: string.user32.dll
key_1.zip.key_1.exe.56428: string.KERNEL32
key_1.zip.key_1.exe.58568: string.ExitProcess
bb068d41ff9eb00f5e7eece6475b710f view report img_59141_5f7a8_1477997285.zip 358698 100 X 0 0
embedded.file img_59141_5f7a8_1477997285.zip 19b638b60c8673e3d0395338b977428f
img_59141_5f7a8_1477997285.zip.embedded.file img_59141_5f7a8_1477997285.zip 15b49966737aaeded32c4cb553545239
img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.zip.embedded.file img_59141_5f7a8_1477997285.exe d7ac11430becaaf417e93305819740bc
img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.exe.78: string.This program cannot be run in DOS mode
img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.exe.59032: string.LoadLibraryA
img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.exe.58338: string.GetModuleHandleA
img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.exe.58536: string.GetCommandLineA
img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.exe.58582: string.GetProcAddress
img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.exe.58380: string.CloseHandle
img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.exe.58942: string.CreateFileA
img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.exe.57264: string.user32.dll
img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.exe.56428: string.KERNEL32
img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.exe.58568: string.ExitProcess
19b638b60c8673e3d0395338b977428f view report img_59141_5f7a8_1477997285.zip 358485 100 X 0 0
embedded.file img_59141_5f7a8_1477997285.zip 15b49966737aaeded32c4cb553545239
img_59141_5f7a8_1477997285.zip.embedded.file img_59141_5f7a8_1477997285.exe d7ac11430becaaf417e93305819740bc
img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.exe.78: string.This program cannot be run in DOS mode
img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.exe.59032: string.LoadLibraryA
img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.exe.58338: string.GetModuleHandleA
img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.exe.58536: string.GetCommandLineA
img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.exe.58582: string.GetProcAddress
img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.exe.58380: string.CloseHandle
img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.exe.58942: string.CreateFileA
img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.exe.57264: string.user32.dll
img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.exe.56428: string.KERNEL32
img_59141_5f7a8_1477997285.zip.img_59141_5f7a8_1477997285.exe.58568: string.ExitProcess
15b49966737aaeded32c4cb553545239 view report img_59141_5f7a8_1477997285.zip 359582 100 X 0 0
embedded.file img_59141_5f7a8_1477997285.exe d7ac11430becaaf417e93305819740bc
img_59141_5f7a8_1477997285.exe.78: string.This program cannot be run in DOS mode
img_59141_5f7a8_1477997285.exe.59032: string.LoadLibraryA
img_59141_5f7a8_1477997285.exe.58338: string.GetModuleHandleA
img_59141_5f7a8_1477997285.exe.58536: string.GetCommandLineA
img_59141_5f7a8_1477997285.exe.58582: string.GetProcAddress
img_59141_5f7a8_1477997285.exe.58380: string.CloseHandle
img_59141_5f7a8_1477997285.exe.58942: string.CreateFileA
img_59141_5f7a8_1477997285.exe.57264: string.user32.dll
img_59141_5f7a8_1477997285.exe.56428: string.KERNEL32
img_59141_5f7a8_1477997285.exe.58568: string.ExitProcess
9d6c775b3c2b6f613dcc820ca09c2f7c view report 9d6c775b3c2b6f613dcc820ca09c2f7c.virus 238080 22 X 0 0
229718: suspicious.office Visual Basic macro
36983: string.CloseHandle
36951: string.CreateFileA
e6e9327c1d570dbc6e44c4440dac7712 view report FinDir.xlam 331328 72 X 0 0
embedded.file vbaProject.bin 125fc9dfd6ce7261b99adfd553fef067
vbaProject.bin.125549: exploit.office embedded Visual Basic write to file Scripting.FileSystemObject
vbaProject.bin.62778: exploit.office embedded Visual Basic execute shell command Wscript.Shell
vbaProject.bin.391496: exploit.office embedded Visual Basic accessing file OpenTextFile
vbaProject.bin.378590: suspicious.office Visual Basic macro
vbaProject.bin.99415: string.URLDownloadToFileA
49c3e88e339c16006d17a72740cfb680 view report 49c3e88e339c16006d17a72740cfb680.virus 337408 22 X 0 0
329046: suspicious.office Visual Basic macro
136311: string.CloseHandle
136279: string.CreateFileA
bf3f040936c53611369db4a2fc4269ae view report bf3f040936c53611369db4a2fc4269ae.virus 156160 22 X 0 0
148754: suspicious.office Visual Basic macro
36983: string.CloseHandle
36951: string.CreateFileA
0bcb1f8033edc90eba222fa1c099e3c8 view report 0bcb1f8033edc90eba222fa1c099e3c8.virus 129536 22 X 0 0
122130: suspicious.office Visual Basic macro
25207: string.CloseHandle
25175: string.CreateFileA
48163477ab28c7771fbbe62e4485bf60 view report 48163477ab28c7771fbbe62e4485bf60.virus 232448 22 X 0 0
224086: suspicious.office Visual Basic macro
30839: string.CloseHandle
30807: string.CreateFileA