Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1 2024-08-12 08:56 380g.exe  

81ee3f681043fedf57e73b20e6c3cf02


Malicious Library .NET framework(MSIL) ScreenShot AntiDebug AntiVM PE File .NET EXE PE32 suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows DNS Cryptographic key
1 10.0 M ZeroCERT

2 2024-03-19 11:09 pok0o0.exe  

1ee90384d6500683ef5445816775e77f


Generic Malware PE File PE32 .NET EXE VirusTotal Malware Check memory Checks debugger ICMP traffic unpack itself Check virtual network interfaces Tofsee Windows Cryptographic key
2 1 4.6 M 48 r0d

3 2024-03-17 10:35 pok0o0.exe  

1ee90384d6500683ef5445816775e77f


PE32 PE File .NET EXE VirusTotal Malware Check memory Checks debugger ICMP traffic unpack itself Check virtual network interfaces Tofsee Windows Cryptographic key
2 1 4.0 M 47 ZeroCERT

4 2023-07-08 14:10 conhost.exe  

197cf1b5f5228af677c04341b43b58f0


Emotet Generic Malware Suspicious_Script_Bin task schedule Downloader UPX Malicious Library Antivirus Malicious Packer .NET framework(MSIL) Create Service Socket P2P DGA Steal credential Http API Escalate priviledges PWS Sniff Audio HTTP DNS ScreenShot Co VirusTotal Malware Buffer PE AutoRuns suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files unpack itself Windows utilities Check virtual network interfaces suspicious process AppData folder AntiVM_Disk WriteConsoleW VM Disk Size Check Tofsee Windows ComputerName Cryptographic key
7 6 1 12.6 33 ZeroCERT

  • First
  • 1
  • Last
  • Total : 4cnts