Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1 2024-07-02 07:58 svchost.exe  

ad8b93be8ce15ff47c2c079201bd17c9


Malicious Library Malicious Packer UPX PE File PE64 OS Processor Check VirusTotal Malware Check memory Checks debugger unpack itself
2.0 M 51 ZeroCERT

2 2024-07-02 07:55 asec.exe  

8962b367891c933d896bc4ed9c2cffba


Generic Malware UPX Antivirus PE File PE32 PowerShell VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Windows utilities Disables Windows Security suspicious process WriteConsoleW Windows Update ComputerName Cryptographic key
9.0 M 45 ZeroCERT

3 2024-07-02 07:51 csrss.exe  

a273d142217177ab8013d6ebeafbc22f


Malicious Library Malicious Packer Antivirus UPX PE File PE64 OS Processor Check PDB Check memory Checks debugger ComputerName Remote Code Execution
1.6 M ZeroCERT

4 2024-07-01 15:33 tsjtmfdm.pkg.exe  

98cc12248c1dfc68103dd9fc4d959f68


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware PDB unpack itself
1.6 26 ZeroCERT

5 2024-07-01 11:03 Hooks.jpg.exe  

422f3763021f8f9bfc31a9a7e4b049f9


Generic Malware Malicious Library Admin Tool (Sysinternals etc ...) Downloader Malicious Packer .NET framework(MSIL) UPX Antivirus PE File PE32 DLL OS Processor Check VirusTotal Malware powershell AutoRuns suspicious privilege Malicious Traffic Check memory Checks debugger Creates shortcut Creates executable files unpack itself Windows utilities powershell.exe wrote suspicious process AppData folder Windows ComputerName DNS Cryptographic key
2 18 4 11.2 M 60 ZeroCERT

6 2024-07-01 11:02 64.jpg.exe  

72762b7ac7c6dfdc7b1c3b3a5171103a


UPX PE File PE64 VirusTotal Malware Check memory unpack itself ComputerName Firmware
3 3.4 M 56 ZeroCERT

7 2024-07-01 10:46 wmi.jpg.exe  

3d3aedfaeaf39544ff74fe6fe4541fc2


UPX PE File PE32 VirusTotal Malware AutoRuns Check memory Creates executable files RWX flags setting Windows utilities WriteConsoleW Firewall state off Windows
2 6.0 M 60 r0d

8 2024-07-01 09:42 rise2806.exe  

97768ab0a4837757b74de2ae892badab


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware unpack itself crashed
2.2 M 32 ZeroCERT

9 2024-07-01 09:38 vidar2806.exe  

f88272ea7674d3acedd8adcf7643c598


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware unpack itself crashed
2.4 40 ZeroCERT

10 2024-07-01 09:38 lumma2806.exe  

0309dd0131150796ea99b30a62194fae


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware unpack itself crashed
2.2 38 ZeroCERT

11 2024-07-01 09:26 1.exe  

07c1efc472c5c8424d6a4e529abc63c5


UPX PE File PE64 OS Processor Check VirusTotal Malware
1.2 16 ZeroCERT

12 2024-07-01 09:23 TQ.jpg.exe  

f9f5342074462fa1048fea806eef535f


Emotet Generic Malware Malicious Library Downloader Malicious Packer Antivirus UPX PE File PE32 OS Processor Check DLL PE64 Malware download VirusTotal Malware SMB Traffic Potential Scan Malicious Traffic Creates executable files ICMP traffic Disables Windows Security AppData folder sandbox evasion Windows DNS DDNS Downloader
8 22 8 9.4 M 55 ZeroCERT

13 2024-07-01 09:23 wmi.jpg.exe  

3d3aedfaeaf39544ff74fe6fe4541fc2


PE File PE32 Malware download VirusTotal Malware SMB Traffic Potential Scan AutoRuns Malicious Traffic Check memory Creates executable files ICMP traffic RWX flags setting Windows utilities suspicious TLD WriteConsoleW Firewall state off Windows DNS DDNS Downloader
10 28 11 11.2 M 60 ZeroCERT

14 2024-06-29 15:39 amadka.exe  

7858fdd5d237ed2531bb9d0ac0a756bc


PE File PE32 Malware download Amadey VirusTotal Malware AutoRuns Malicious Traffic Checks debugger unpack itself Checks Bios Detects VMWare AppData folder VMware anti-virtualization Windows DNS crashed
2 2 2 10.6 M 29 ZeroCERT

15 2024-06-29 15:27 XClient1.exe  

dedb302aba9b69536c287633fbe41f5d


Antivirus UPX PE File .NET EXE PE32 OS Processor Check Lnk Format GIF Format VirusTotal Malware AutoRuns suspicious privilege MachineGuid Check memory Checks debugger Creates shortcut Creates executable files unpack itself AppData folder AntiVM_Disk VM Disk Size Check Windows ComputerName keylogger
6.2 M 58 ZeroCERT