Names | DvDupdate.dll | |
Category | Malware | |
Type | Loader | |
Description | (Kaspersky) This is a service DLL, but with all the same exports you would expect from a COM object. Basically, it’s a payload loader. The whole code is obfuscated with different Windows API calls and loops. It wasn’t designed to confuse a reverse engineer or to make reverse engineering harder, but to bypass some simple AV emulation engines. | |
Information | <https://securelist.com/titanium-the-platinum-group-strikes-again/94961/> |
Last change to this tool card: 20 April 2020
Download this tool card in JSON format
Changed | Name | Country | Observed | ||
APT groups | |||||
Platinum | 2009-Nov 2019 |
1 group listed (1 APT, 0 other, 0 unknown)
Digital Service Security Center Follow us on |
Report incidents |
|
+66 (0)2-123-1227 | ||
[email protected] |