Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1 2021-09-15 10:37 632514XVC_PO.scr  

8a535e9629e030d4656fa875efa4232f


RAT PWS .NET framework Generic Malware Antivirus DNS AntiDebug AntiVM PE File .NET EXE PE32 powershell Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Check memory Checks debugger buffers extracted WMI Creates shortcut ICMP traffic unpack itself Windows utilities powershell.exe wrote suspicious process WriteConsoleW human activity check Windows ComputerName DNS Cryptographic key DDNS crashed
6 1 16.2 ZeroCERT

2 2021-09-15 10:28 3201ZX_PO.scr  

90a52829d0ebf1a006ea826a6034cdf0


RAT PWS .NET framework Generic Malware Antivirus DNS AntiDebug AntiVM PE File .NET EXE PE32 powershell Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Check memory Checks debugger buffers extracted WMI Creates shortcut ICMP traffic unpack itself Windows utilities powershell.exe wrote suspicious process WriteConsoleW human activity check Windows ComputerName DNS Cryptographic key DDNS crashed
6 1 16.2 ZeroCERT

  • First
  • 1
  • Last
  • Total : 2cnts