Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1 2021-10-01 09:34 WORD.exe  

102a4d939738d2c875503b14f99c0aeb


RAT Generic Malware Antivirus DNS AntiDebug AntiVM PE File .NET EXE PE32 VirusTotal Malware powershell Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Check memory Checks debugger buffers extracted Creates shortcut unpack itself Windows utilities powershell.exe wrote suspicious process WriteConsoleW human activity check Windows ComputerName DNS Cryptographic key DDNS crashed
2 1 15.2 M 31 ZeroCERT

2 2021-10-01 09:31 EXCEL.exe  

cb12b24b0f69225693168e9c35761a1b


RAT Generic Malware Antivirus AntiDebug AntiVM PE File .NET EXE PE32 MSOffice File VirusTotal Malware powershell Buffer PE suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut RWX flags setting exploit crash unpack itself Windows utilities Disables Windows Security suspicious process WriteConsoleW Windows Exploit ComputerName Cryptographic key crashed
15.0 M 24 ZeroCERT

3 2021-09-22 09:50 mswindow.exe  

3cfea06304d4f15a2a7b9cf0ba55a05f


PWS .NET framework Generic Malware Antivirus PE File .NET EXE PE32 VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut unpack itself powershell.exe wrote suspicious process Windows ComputerName Cryptographic key crashed
7.6 34 ZeroCERT

  • First
  • 1
  • Last
  • Total : 3cnts