Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
106 2022-08-18 11:09 gamapixejoxawifom.pdf  

8bdd2cdd39b2ad7b679faa50f629ce2b


PDF VirusTotal Malware unpack itself Windows utilities Windows
2.2 M 23 ZeroCERT

107 2022-08-18 11:13 gamapixejoxawifom.pdf  

8bdd2cdd39b2ad7b679faa50f629ce2b


PDF VirusTotal Malware unpack itself Windows utilities Windows
2.2 M 23 ZeroCERT

108 2022-08-18 11:26 gamapixejoxawifom.pdf  

8bdd2cdd39b2ad7b679faa50f629ce2b


PDF VirusTotal Malware ICMP traffic unpack itself Windows utilities Windows
3.0 M 23 ZeroCERT

109 2022-08-18 12:21 gamapixejoxawifom.pdf  

8bdd2cdd39b2ad7b679faa50f629ce2b


PDF AntiDebug AntiVM PNG Format JPEG Format MSOffice File VirusTotal Malware Code Injection RWX flags setting exploit crash unpack itself Windows utilities Tofsee Windows Exploit DNS crashed
2 7 2 5.2 M 23 ZeroCERT

110 2022-08-26 09:57 OV DU 220722.PDF.js  

49bf7b5a02c13cc0b3e7cce7bfebc5b4


Malicious Library PE32 PE File VirusTotal Malware Creates executable files RWX flags setting unpack itself AppData folder ComputerName DNS
1 7.0 22 ZeroCERT

111 2022-09-08 10:08 FACTURA DE PAGO 07 LEXOR.pdf  

b5ea5b75175011e0b15eaba20b6e54b6


PDF unpack itself Windows utilities Windows DNS
1 2 2.0 ZeroCERT

112 2022-09-09 10:33 ##INV225PDF.vbs  

f98abafacba0c5ab793e5662b4baf85d

VBScript buffers extracted wscript.exe payload download suspicious process WriteConsoleW Tofsee Dropper
1 2 1 10.0 ZeroCERT

113 2022-09-21 18:16 Matrixport Pay Raise.pdf  

e55dff61cfdbdafc827d1031006c2d65


PDF unpack itself Windows utilities Windows
1.4 ZeroCERT

114 2022-09-27 04:31 COMPROBANTE_OPERACION_SPEI.pdf  

593003c3a6a04780255e223b1b1f45dd


PDF
guest

115 2022-10-01 12:40 Confirmation transfer Copy MT1...  

8071f8af591e0433f4709047836143a2

VirusTotal Malware VBScript AutoRuns WMI wscript.exe payload download Creates executable files unpack itself AntiVM_Disk VM Disk Size Check Windows ComputerName DNS DDNS Dropper
1 4 1 10.0 12 ZeroCERT

116 2022-10-04 10:13 DetailsInfoPDF.pdf.lnk  

71a2a9192ecf4c96cc5046101b869882


Malicious Library UPX PDF AntiDebug AntiVM GIF Format PE32 OS Processor Check DLL PE File VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut Creates executable files unpack itself Windows utilities suspicious process sandbox evasion installed browsers check Windows Browser ComputerName
1 2 8.2 4 ZeroCERT

117 2022-10-25 09:43 32-Advisory-No-32-2022.pdf  

95a3e6e8f01d0847128c6ff5f0f7a5b6


PDF Windows utilities Windows
5 1.4 ZeroCERT

118 2022-11-12 05:28 03_25689745-havfs-kshdg09sj-Fd...  

40b4bed84c0d926fdb0a3c731db0e6ee


PDF
guest

119 2022-11-18 17:18 202109160701388048.pdf  

8394edb6189484e05a0beee2dba691aa


PDF Suspicious Link PDF VirusTotal Malware
0.6 16 ZeroCERT

120 2022-11-18 17:20 depapit.pdf  

bfc72fced72b30e16bf7b141d6baf5d5


PDF Suspicious Link Anti_VM PDF VirusTotal Malware
0.6 15 ZeroCERT