heard a lot of questions regarding malware that contain x64 modules on board and work fine on x32 and x64 with payload, here an idea to collect some families together;
- ZeroAccess (aka Sirefef) backdoor: ZeroAccess (alias MaxPlus, Sirefef)
- Ursnif stealer: Ursnif - New Blackhole spreading malware
- TDL 4: Rootkit TDL 4 (alias TDSS, Alureon.DX, Olmarik)
- Cidox/Mayachok.2: Trojan.Mayachok.2
- Gapz: Bootkit: Win32/Gapz
- Sinowal: Win32/Sinowal (alias Mebroot)
- Necurs: Necurs - another x64 rootkit
- PlusDriver: WinNT/Gowfi - Rootkit Banker (alias KillFiles, KillAV)
- Weelsof: Ransom Weelsof
- Winnti: Winnti backdoor
- Mediyes: WinNT/Mediyes
- Viknok: WinNT/Viknok
Last edited by EP_X0FF on Mon Apr 22, 2013 5:28 am, edited 5 times in total.
Reason: list updated