MalwareBazaar Database

This page shows some basic information the YARA rule PUA_VULN_Driver_Windowsrserverddkprovider_Gdrvsys_Windowsrserverddkdriver_31F4 including corresponding malware samples.

Database Entry


YARA Rule:PUA_VULN_Driver_Windowsrserverddkprovider_Gdrvsys_Windowsrserverddkdriver_31F4
Author:Florian Roth
Description:Detects vulnerable driver mentioned in LOLDrivers project using VersionInfo values from the PE header - gdrv.sys
Firstseen:2024-02-22 11:24:41 UTC
Lastseen:2024-07-04 06:25:10 UTC
Sightings:3

Malware Samples


The table below shows all malware samples that matching this particular YARA rule (max 1000).

Firstseen (UTC)SHA256 hashTagsSignatureReporter