Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1 2025-01-06 18:39 win.exe  

be47562482b77cbab1d03e6290a75c8c


AntiDebug AntiVM PE File PE32 VirusTotal Malware AutoRuns suspicious privilege Code Injection Creates executable files Windows utilities Disables Windows Security suspicious process AppData folder Windows DNS
1 10.2 62 ZeroCERT

2 2025-01-06 18:36 ytjgjdrthjdw.exe  

cc5e91e1a0c3ca5edf2bdba7fa252827


Generic Malware Malicious Library Malicious Packer .NET framework(MSIL) UPX PE File .NET EXE PE32 VirusTotal Malware WriteConsoleW IP Check ComputerName DNS DoTNet
4 3 3.6 64 ZeroCERT

3 2025-01-06 18:35 XClient.exe  

2e525ccebf9ede7492931251eb66571a


Malicious Library Antivirus UPX PE File .NET EXE PE32 OS Processor Check Lnk Format GIF Format VirusTotal Malware AutoRuns suspicious privilege MachineGuid Check memory Checks debugger Creates shortcut Creates executable files unpack itself Windows utilities Check virtual network interfaces suspicious process AppData folder AntiVM_Disk WriteConsoleW VM Disk Size Check Windows ComputerName
1 7.4 55 ZeroCERT

4 2025-01-06 18:35 l3v0.exe  

bce921da7e4ed6138b0d5cb30952a855


UPX PE File PE64 OS Processor Check VirusTotal Malware PDB DNS
1 3.0 49 ZeroCERT

5 2025-01-05 12:21 image-1.jpeg  

6cb5fad94b60e6e0dbcdf13eae279391


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM JPEG Format MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows
3.2 guest

6 2025-01-05 12:21 image.png  

e398ed60ed9da93fdc26272b5be4f093


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM PNG Format MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows
2.6 guest

7 2025-01-05 12:19 image-1.png  

de24bc5899e355b54912baa76b94972a


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM PNG Format MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows
3.2 guest

8 2025-01-05 12:19 image-3.png  

32d114c7816cb1e64b3bc69204adb8fb


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM PNG Format MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows
3.2 guest

9 2025-01-05 12:19 image.jpeg  

407eefbf42dc4514e50e31b43f6d4a36


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM JPEG Format MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows
2.6 guest

10 2025-01-05 12:17 image-2.png  

946019efda5b0f8b47cb3da042ac86e5


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM PNG Format MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows
3.2 guest

11 2025-01-05 12:17 cover.jpeg  

9d11fa27b04c0dacfd612dc580d6650c


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM JPEG Format MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows
3.2 guest

12 2025-01-05 12:16 index_split_032.html  

f0f3429848bb06bea285de6ce6093030


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows
3.2 guest

13 2025-01-05 12:16 index_split_028.html  

17ffccf917dc8627380e7d6f578e5315


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows
2.6 guest

14 2025-01-05 12:14 index_split_019.html  

32bcaa9d534d20d177a11496bc787925


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows
3.2 guest

15 2025-01-05 12:14 index_split_015.html  

ff62af00fd57662d587ce94a3604144f


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows
2.6 guest