Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1 2023-11-25 18:08 PLmp.exe  

d689713e2c880daf649ec894a0761274


PrivateLoader NPKI Gen1 HermeticWiper Generic Malware Suspicious_Script NSIS Malicious Library VMProtect UPX Antivirus Malicious Packer Admin Tool (Sysinternals etc ...) Anti_VM Javascript_Blob AntiDebug AntiVM PE File PE64 PE32 DLL PNG Format JPEG Forma Browser Info Stealer Malware download VirusTotal Malware MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files unpack itself Disables Windows Security AppData folder AntiVM_Disk sandbox evasion WriteConsoleW IP Check VM Disk Size Check PrivateLoader Tofsee Ransomware Windows Browser DNS
5 10 8 2 19.4 M 43 ZeroCERT

2 2023-02-12 15:05 WW2.exe  

6cc7d9664c1a89c58549e57b5959bb38


Generic Malware Malicious Library UPX PE32 OS Processor Check PE File VirusTotal Malware Malicious Traffic Checks debugger Disables Windows Security Check virtual network interfaces IP Check Tofsee Windows DNS
5 11 3 1 5.8 M 42 ZeroCERT

3 2022-12-19 10:03 WW20.exe  

5debae710acc279440b0fb96ad7ba5ef


AgentTesla PWS[m] browser info stealer Generic Malware Google Chrome User Data Downloader Malicious Library UPX Create Service DGA Socket ScreenShot DNS BitCoin Internet API Code injection Sniff Audio HTTP Steal credential KeyLogger P2P Escalate priviledg Browser Info Stealer VirusTotal Malware AutoRuns Code Injection Malicious Traffic Checks debugger Creates executable files exploit crash unpack itself Windows utilities Disables Windows Security suspicious process malicious URLs suspicious TLD sandbox evasion WriteConsoleW IP Check installed browsers check Tofsee Windows Exploit Browser ComputerName DNS crashed
6 13 13 15.0 M 32 ZeroCERT

  • First
  • 1
  • Last
  • Total : 3cnts