Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1 2021-08-29 12:38 HBN.exe  

2d7eff43e6fe7e7b4985625183560f69


Generic Malware Malicious Packer DNS AntiDebug AntiVM PE File .NET EXE PE32 Malware download Nanocore VirusTotal Malware c&c Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Check memory Checks debugger buffers extracted WMI unpack itself Windows utilities suspicious process WriteConsoleW human activity check Windows ComputerName DNS DDNS
2 2 13.8 M 50 ZeroCERT

2 2021-07-13 17:55 catx.exe  

bef6fd5ba7b6b4d460c13c12df3dfc54


Generic Malware Antivirus Malicious Packer DNS AntiDebug AntiVM PE32 PE File .NET EXE VirusTotal Malware Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Check memory Checks debugger buffers extracted WMI Creates executable files unpack itself Windows utilities suspicious process AppData folder WriteConsoleW human activity check Windows ComputerName DNS DDNS
4 16.0 36 ZeroCERT

3 2021-07-12 09:48 powerpoint.exe  

e7e37e58de40b390fcded847360e0c49


AgentTesla PWS .NET framework browser info stealer Generic Malware Google Chrome User Data Malicious Packer Socket Sniff Audio Escalate priviledges KeyLogger Code injection Internet API Downloader persistence DGA DNS Create Service HTTP FTP Http API Steal Buffer PE AutoRuns Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities WriteConsoleW Windows
9.6 ZeroCERT

  • First
  • 1
  • Last
  • Total : 3cnts