Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
16 2024-07-03 08:05 wp.exe  

140e8ca7a6a6df97fe913af1adad9cbe


AgentTesla Malicious Library PWS SMTP KeyLogger AntiDebug AntiVM PE File .NET EXE PE32 Browser Info Stealer Email Client Info Stealer Buffer PE suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces Tofsee Windows Gmail Browser Email ComputerName Cryptographic key crashed keylogger
2 2 12.4 M ZeroCERT

17 2024-07-02 10:19 controlfirebase65.txt.exe  

eb34eabec4f015fb2c9d8949545dc480


AgentTesla Malicious Library Malicious Packer UPX PE File OS Memory Check .NET EXE PE32 OS Name Check OS Processor Check Browser Info Stealer Malware download VirusTotal Email Client Info Stealer Malware AgentTesla suspicious privilege Malicious Traffic Check memory Checks debugger unpack itself Check virtual network interfaces IP Check Windows Browser Email ComputerName crashed
1 4 3 7.8 60 ZeroCERT

18 2024-07-02 10:19 baze644444444444444444444444.t...  

e0659414477aceed1bd5ef7c92dc6b7b


AgentTesla Malicious Library Malicious Packer UPX PE File OS Memory Check .NET EXE PE32 OS Name Check OS Processor Check Browser Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Malicious Traffic Check memory Checks debugger unpack itself Check virtual network interfaces IP Check Browser Email ComputerName crashed
1 2 1 6.0 56 ZeroCERT

19 2024-07-02 10:15 spoofer.sys  

ece894602ee9353cce23dc4ece8a5445


PE File PE64 VirusTotal Malware PDB
1.4 34 ZeroCERT

20 2024-07-02 09:49 25.txt.exe  

b2e56a7b3dd03c8000e78544f540677d


AsyncRAT Malicious Library Malicious Packer .NET framework(MSIL) UPX PE File .NET EXE PE32 OS Processor Check VirusTotal Malware DNS DDNS
2 2 1.6 51 ZeroCERT

21 2024-07-02 09:48 27.txt.exe  

cfa3c233dbdff5cf57692484c4e50e6a


AsyncRAT Malicious Library Malicious Packer .NET framework(MSIL) UPX PE File .NET EXE PE32 OS Processor Check VirusTotal Malware DNS DDNS
2 2 1.6 51 ZeroCERT

22 2024-07-02 09:47 28.txt.exe  

3b2129194c379040d94f02260925b029


AsyncRAT Malicious Library Malicious Packer .NET framework(MSIL) UPX PE File .NET EXE PE32 OS Processor Check VirusTotal Malware DNS DDNS
2 2 1.6 49 ZeroCERT

23 2024-07-02 07:58 svchost.exe  

ad8b93be8ce15ff47c2c079201bd17c9


Malicious Library Malicious Packer UPX PE File PE64 OS Processor Check VirusTotal Malware Check memory Checks debugger unpack itself
2.0 M 51 ZeroCERT

24 2024-07-02 07:55 asec.exe  

8962b367891c933d896bc4ed9c2cffba


Generic Malware UPX Antivirus PE File PE32 PowerShell VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Windows utilities Disables Windows Security suspicious process WriteConsoleW Windows Update ComputerName Cryptographic key
9.0 M 45 ZeroCERT

25 2024-07-02 07:51 csrss.exe  

a273d142217177ab8013d6ebeafbc22f


Malicious Library Malicious Packer Antivirus UPX PE File PE64 OS Processor Check PDB Check memory Checks debugger ComputerName Remote Code Execution
1.6 M ZeroCERT

26 2024-07-01 15:33 tsjtmfdm.pkg.exe  

98cc12248c1dfc68103dd9fc4d959f68


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware PDB unpack itself
1.6 26 ZeroCERT

27 2024-07-01 11:03 Hooks.jpg.exe  

422f3763021f8f9bfc31a9a7e4b049f9


Generic Malware Malicious Library Admin Tool (Sysinternals etc ...) Downloader Malicious Packer .NET framework(MSIL) UPX Antivirus PE File PE32 DLL OS Processor Check VirusTotal Malware powershell AutoRuns suspicious privilege Malicious Traffic Check memory Checks debugger Creates shortcut Creates executable files unpack itself Windows utilities powershell.exe wrote suspicious process AppData folder Windows ComputerName DNS Cryptographic key
2 18 4 11.2 M 60 ZeroCERT

28 2024-07-01 11:02 64.jpg.exe  

72762b7ac7c6dfdc7b1c3b3a5171103a


UPX PE File PE64 VirusTotal Malware Check memory unpack itself ComputerName Firmware
3 3.4 M 56 ZeroCERT

29 2024-07-01 10:46 wmi.jpg.exe  

3d3aedfaeaf39544ff74fe6fe4541fc2


UPX PE File PE32 VirusTotal Malware AutoRuns Check memory Creates executable files RWX flags setting Windows utilities WriteConsoleW Firewall state off Windows
2 6.0 M 60 r0d

30 2024-07-01 09:42 rise2806.exe  

97768ab0a4837757b74de2ae892badab


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware unpack itself crashed
2.2 M 32 ZeroCERT