diff --git a/README.md b/README.md index 36f7098..b395d16 100644 --- a/README.md +++ b/README.md @@ -38,7 +38,7 @@ Start by running the console: ## License theZoo - the most awesome free malware database on the air -Copyright (C) 2015, Yuval Nativ, Lahad Ludar, 5fingers +Copyright (C) 2015-2021, Yuval Nativ, Lahad Ludar, 5fingers This program is free software: you can redistribute it and/or modify it under the terms of the GNU General Public License as published by diff --git a/conf/db.ver b/conf/db.ver index f39bcc7..d92c60a 100644 --- a/conf/db.ver +++ b/conf/db.ver @@ -1 +1 @@ -1616926739000 +1638767036000 \ No newline at end of file diff --git a/conf/maldb.db b/conf/maldb.db index 9c169a6..58cc46e 100644 Binary files a/conf/maldb.db and b/conf/maldb.db differ diff --git a/malware/Binaries/Trojan.Ransom.Hells/Trojan.Ransom.Hells.md5 b/malware/Binaries/Trojan.Ransom.Hells/Trojan.Ransom.Hells.md5 new file mode 100644 index 0000000..c2c6613 --- /dev/null +++ b/malware/Binaries/Trojan.Ransom.Hells/Trojan.Ransom.Hells.md5 @@ -0,0 +1 @@ +a158607e499d658b54d123daf0fdb1b6 diff --git a/malware/Binaries/Trojan.Ransom.Hells/Trojan.Ransom.Hells.pass b/malware/Binaries/Trojan.Ransom.Hells/Trojan.Ransom.Hells.pass new file mode 100644 index 0000000..ba701bf --- /dev/null +++ b/malware/Binaries/Trojan.Ransom.Hells/Trojan.Ransom.Hells.pass @@ -0,0 +1 @@ +infected diff --git a/malware/Binaries/Trojan.Ransom.Hells/Trojan.Ransom.Hells.sha b/malware/Binaries/Trojan.Ransom.Hells/Trojan.Ransom.Hells.sha new file mode 100644 index 0000000..0c9ee17 --- /dev/null +++ b/malware/Binaries/Trojan.Ransom.Hells/Trojan.Ransom.Hells.sha @@ -0,0 +1 @@ +aed230b6b772aeb5c25e9336086e9dd4d6081d3efc205f9f9214b51f2f8c3655 diff --git a/malware/Binaries/Trojan.Ransom.Hells/Trojan.Ransom.Hells.zip b/malware/Binaries/Trojan.Ransom.Hells/Trojan.Ransom.Hells.zip new file mode 100644 index 0000000..82a4785 Binary files /dev/null and b/malware/Binaries/Trojan.Ransom.Hells/Trojan.Ransom.Hells.zip differ diff --git a/malware/Binaries/Trojan.Ransom.Petya/Trojan.Ransom.Petya.md5 b/malware/Binaries/Trojan.Ransom.Petya/Trojan.Ransom.Petya.md5 new file mode 100644 index 0000000..108e420 --- /dev/null +++ b/malware/Binaries/Trojan.Ransom.Petya/Trojan.Ransom.Petya.md5 @@ -0,0 +1 @@ +8ed9a60127aee45336102bf12059a850 diff --git a/malware/Binaries/Trojan.Ransom.Petya/Trojan.Ransom.Petya.pass b/malware/Binaries/Trojan.Ransom.Petya/Trojan.Ransom.Petya.pass new file mode 100644 index 0000000..ba701bf --- /dev/null +++ b/malware/Binaries/Trojan.Ransom.Petya/Trojan.Ransom.Petya.pass @@ -0,0 +1 @@ +infected diff --git a/malware/Binaries/Trojan.Ransom.Petya/Trojan.Ransom.Petya.sha b/malware/Binaries/Trojan.Ransom.Petya/Trojan.Ransom.Petya.sha new file mode 100644 index 0000000..4508667 --- /dev/null +++ b/malware/Binaries/Trojan.Ransom.Petya/Trojan.Ransom.Petya.sha @@ -0,0 +1 @@ +eefa052da01c3faa1d1f516ddfefa8ceb8a5185bb9b5368142ffdf839aea4506 diff --git a/malware/Binaries/Trojan.Ransom.Petya/Trojan.Ransom.Petya.zip b/malware/Binaries/Trojan.Ransom.Petya/Trojan.Ransom.Petya.zip new file mode 100644 index 0000000..cc62858 Binary files /dev/null and b/malware/Binaries/Trojan.Ransom.Petya/Trojan.Ransom.Petya.zip differ diff --git a/malware/Binaries/Win32.Cainxpii/Win32.Cainxpii.md5 b/malware/Binaries/Win32.Cainxpii/Win32.Cainxpii.md5 new file mode 100644 index 0000000..db334df --- /dev/null +++ b/malware/Binaries/Win32.Cainxpii/Win32.Cainxpii.md5 @@ -0,0 +1 @@ +b381175a1dbb559dde2ae4f0198d3c4e diff --git a/malware/Binaries/Win32.Cainxpii/Win32.Cainxpii.pass b/malware/Binaries/Win32.Cainxpii/Win32.Cainxpii.pass new file mode 100644 index 0000000..ba701bf --- /dev/null +++ b/malware/Binaries/Win32.Cainxpii/Win32.Cainxpii.pass @@ -0,0 +1 @@ +infected diff --git a/malware/Binaries/Win32.Cainxpii/Win32.Cainxpii.sha b/malware/Binaries/Win32.Cainxpii/Win32.Cainxpii.sha new file mode 100644 index 0000000..42ab92b --- /dev/null +++ b/malware/Binaries/Win32.Cainxpii/Win32.Cainxpii.sha @@ -0,0 +1 @@ +d8f1b3dec08f0e287469773ea6813d46c41d7db44a37e4cd481094d0416be356 diff --git a/malware/Binaries/Win32.Cainxpii/Win32.Cainxpii.zip b/malware/Binaries/Win32.Cainxpii/Win32.Cainxpii.zip new file mode 100644 index 0000000..65e7678 Binary files /dev/null and b/malware/Binaries/Win32.Cainxpii/Win32.Cainxpii.zip differ diff --git a/malware/Binaries/Win32.FamousSparrow/Win32.FamousSparrow.md5 b/malware/Binaries/Win32.FamousSparrow/Win32.FamousSparrow.md5 new file mode 100644 index 0000000..cb69534 --- /dev/null +++ b/malware/Binaries/Win32.FamousSparrow/Win32.FamousSparrow.md5 @@ -0,0 +1 @@ +15f53dd7a7f04394c6c69fea6761b486 diff --git a/malware/Binaries/Win32.FamousSparrow/Win32.FamousSparrow.pass b/malware/Binaries/Win32.FamousSparrow/Win32.FamousSparrow.pass new file mode 100644 index 0000000..ba701bf --- /dev/null +++ b/malware/Binaries/Win32.FamousSparrow/Win32.FamousSparrow.pass @@ -0,0 +1 @@ +infected diff --git a/malware/Binaries/Win32.FamousSparrow/Win32.FamousSparrow.sha b/malware/Binaries/Win32.FamousSparrow/Win32.FamousSparrow.sha new file mode 100644 index 0000000..844b968 --- /dev/null +++ b/malware/Binaries/Win32.FamousSparrow/Win32.FamousSparrow.sha @@ -0,0 +1 @@ +8bed4a16dc38a2e0dd8b367828f1c2b1b68c9efa58f5ece2d5490d256107f1c5 diff --git a/malware/Binaries/Win32.FamousSparrow/Win32.FamousSparrow.zip b/malware/Binaries/Win32.FamousSparrow/Win32.FamousSparrow.zip new file mode 100644 index 0000000..72972f7 Binary files /dev/null and b/malware/Binaries/Win32.FamousSparrow/Win32.FamousSparrow.zip differ diff --git a/malware/Binaries/Win32.Jerusalem/Win32.Jerusalem.md5 b/malware/Binaries/Win32.Jerusalem/Win32.Jerusalem.md5 new file mode 100644 index 0000000..daeed42 --- /dev/null +++ b/malware/Binaries/Win32.Jerusalem/Win32.Jerusalem.md5 @@ -0,0 +1 @@ +08e75c0d7de04bfe7e1df734e8d43591 diff --git a/malware/Binaries/Win32.Jerusalem/Win32.Jerusalem.pass b/malware/Binaries/Win32.Jerusalem/Win32.Jerusalem.pass new file mode 100644 index 0000000..ba701bf --- /dev/null +++ b/malware/Binaries/Win32.Jerusalem/Win32.Jerusalem.pass @@ -0,0 +1 @@ +infected diff --git a/malware/Binaries/Win32.Jerusalem/Win32.Jerusalem.sha b/malware/Binaries/Win32.Jerusalem/Win32.Jerusalem.sha new file mode 100644 index 0000000..6d50bf5 --- /dev/null +++ b/malware/Binaries/Win32.Jerusalem/Win32.Jerusalem.sha @@ -0,0 +1 @@ +0c7258022ec7cedc25aff4cca7e12de535055cc674f81253a8a1b2bc3f7b5d3b diff --git a/malware/Binaries/Win32.Jerusalem/Win32.Jerusalem.zip b/malware/Binaries/Win32.Jerusalem/Win32.Jerusalem.zip new file mode 100644 index 0000000..241b0ae Binary files /dev/null and b/malware/Binaries/Win32.Jerusalem/Win32.Jerusalem.zip differ diff --git a/malware/Binaries/Win32.Taleret/Win32.Taleret.md5 b/malware/Binaries/Win32.Taleret/Win32.Taleret.md5 new file mode 100644 index 0000000..93a5175 --- /dev/null +++ b/malware/Binaries/Win32.Taleret/Win32.Taleret.md5 @@ -0,0 +1 @@ +93921e5231dbbffaa6847c16ebc67c0517cfb3c2 diff --git a/malware/Binaries/Win32.Taleret/Win32.Taleret.pass b/malware/Binaries/Win32.Taleret/Win32.Taleret.pass new file mode 100644 index 0000000..ba701bf --- /dev/null +++ b/malware/Binaries/Win32.Taleret/Win32.Taleret.pass @@ -0,0 +1 @@ +infected diff --git a/malware/Binaries/Win32.Taleret/Win32.Taleret.sha b/malware/Binaries/Win32.Taleret/Win32.Taleret.sha new file mode 100644 index 0000000..9d9fb9b --- /dev/null +++ b/malware/Binaries/Win32.Taleret/Win32.Taleret.sha @@ -0,0 +1 @@ +302108843799b582f57efa95aa453797be70913c00c20f6fdbb2c4581d6ec56c diff --git a/malware/Binaries/Win32.Taleret/Win32.Taleret.zip b/malware/Binaries/Win32.Taleret/Win32.Taleret.zip new file mode 100644 index 0000000..cb0ef2b Binary files /dev/null and b/malware/Binaries/Win32.Taleret/Win32.Taleret.zip differ