c0de0fec34da3e9ca92c47bfadf723ab75c90fe02ceb3455d74155badfcb3380
Agent.BTZ
2008
Malware targeting US military networks.
#
Properties
magic
exe
mime type
application/vnd.microsoft.portable-executable
size
176.0 kB
entropy
5.944087029
md5
5ef729...4054f0
sha1
41faea...3a5549
sha256
c0de0f...cb3380
imphash
9d0d6d...944f87
tlsh
77046c...43aa07
Internet Results
yara-rules/RussianAPT.yar at master · intezer/yara-rules · GitHub
GitHub
... " or hash.sha256(0, filesize) == "
c0de0fec34da3e9ca92c47bfadf723ab75c90fe02ceb3455d74155badfcb3380
" or hash.sha256(0, filesize) ...
Visit Stairwell.com
8
♦
A
♠
ILOVEYOU
2
♠
Stuxnet
3
♠
WannaCry
4
♠
Conficker
5
♠
Flame
6
♠
Flame 2.0
7
♠
Duqu
8
♠
SolarWinds Supply Chain Attack
9
♠
BlackEnergy
10
♠
Regin
J
♠
Emotet
Q
♠
APT28/Sofacy
K
♠
Code Red
A
♥
SQL Slammer
2
♥
BlackPOS
3
♥
Operation Aurora
4
♥
Industroyer
5
♥
Sony Pictures Hack
6
♥
EternalBlue
7
♥
Ghost RAT
8
♥
FinFisher
9
♥
Mimikatz
10
♥
BonziBuddy
J
♥
Leaves
Q
♥
WEBC2
K
♥
NotPetya
A
♣
Zeus
2
♣
APT29/Cozy Bear
3
♣
Blaster
4
♣
Operation GhostNet
5
♣
APT32/OceanLotus
6
♣
HermeticWiper
7
♣
Mydoom
8
♣
DarkSide
9
♣
Cobalt Strike
10
♣
Mirai
J
♣
Dridex
Q
♣
Shamoon
K
♣
Operation Cleaver
A
♦
WarzoneRAT
2
♦
Akira
3
♦
Sandworm
4
♦
BlueKeep Exploit
5
♦
Remcos
6
♦
LockBit
7
♦
Moonlight Maze
8
♦
Agent.BTZ
9
♦
Chernobyl / CIH
10
♦
BadSector
J
♦
Michelangelo
Q
♦
Morris worm
K
♦
TrickBot
J
🃏︎
EICAR