MalwareBazaar Database

This page shows some basic information the YARA rule PUA_VULN_Driver_Windowsrserverddkprovider_Gdrvsys_Windowsrserverddkdriver_8899 including corresponding malware samples.

Database Entry


YARA Rule:PUA_VULN_Driver_Windowsrserverddkprovider_Gdrvsys_Windowsrserverddkdriver_8899
Author:Florian Roth
Description:Detects vulnerable driver mentioned in LOLDrivers project using VersionInfo values from the PE header - gdrv.sys
Firstseen:2025-05-16 22:14:27 UTC
Lastseen:2025-08-21 05:28:30 UTC
Sightings:2

Malware Samples


The table below shows all malware samples that matching this particular YARA rule (max 1000).

Firstseen (UTC)SHA256 hashTagsSignatureReporter