Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1 2021-08-19 19:20 msword.exe  

389c1a165c6169966cee944569e9ad35


email stealer Generic Malware Admin Tool (Sysinternals etc ...) DNS Escalate priviledges KeyLogger Code injection Downloader persistence AntiDebug AntiVM PE File .NET EXE PE32 VirusTotal Malware MachineGuid Code Injection Check memory Checks debugger buffers extracted WMI unpack itself Windows utilities suspicious process WriteConsoleW Windows ComputerName DNS Cryptographic key crashed
2 11.2 23 ZeroCERT

2 2021-08-19 19:17 insta.exe  

11a79a566d71be64898643e5d9c47d1f


Generic Malware Admin Tool (Sysinternals etc ...) AntiDebug AntiVM PE File .NET EXE PE32 VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows utilities suspicious process WriteConsoleW Windows ComputerName Cryptographic key
10.6 M 26 ZeroCERT

3 2021-08-19 09:52 docx.exe  

060d51548927a76054327f8d17aca3a1


RAT PWS .NET framework email stealer Generic Malware Admin Tool (Sysinternals etc ...) DNS Socket Escalate priviledges KeyLogger Code injection Downloader persistence AntiDebug AntiVM PE File .NET EXE PE32 VirusTotal Malware Code Injection Check memory Checks debugger buffers extracted unpack itself Windows utilities suspicious process WriteConsoleW Windows ComputerName DNS Cryptographic key crashed
1 11.0 M 27 ZeroCERT

4 2021-08-19 09:43 texts.exe  

dc1cbeeae12fd82cbbab918c6037b965


Generic Malware Admin Tool (Sysinternals etc ...) PE File .NET EXE PE32 VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger unpack itself Windows utilities suspicious process WriteConsoleW Windows ComputerName Cryptographic key
7.6 M 30 ZeroCERT

  • First
  • 1
  • Last
  • Total : 4cnts