Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1 2021-10-14 16:57 WT_03986354356-39876354533.exe  

ca49afc18eb80ac0e4c784b3d093767d


PWS .NET framework Generic Malware DNS AntiDebug AntiVM PE File PE32 .NET EXE Malware download Nanocore VirusTotal Malware c&c Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Check memory Checks debugger buffers extracted unpack itself Windows utilities suspicious process WriteConsoleW human activity check Windows ComputerName DNS DDNS
2 2 13.2 16 ZeroCERT

2 2021-10-12 10:47 HGF_093876533679-09876535678.e...  

8e674224762af6cc955b9d3c7c068cd3


RAT PWS .NET framework Generic Malware DNS AntiDebug AntiVM PE File PE32 .NET EXE VirusTotal Malware Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Check memory Checks debugger buffers extracted unpack itself Windows utilities suspicious process WriteConsoleW human activity check Windows ComputerName DNS DDNS crashed
2 1 15.4 30 ZeroCERT

3 2021-10-04 17:57 HTG~0000098765434567-098765432...  

a3fb8baaebd4544f3eca7dd0d4da2ad0


RAT PWS .NET framework Generic Malware Admin Tool (Sysinternals etc ...) DNS AntiDebug AntiVM PE File .NET EXE PE32 Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities suspicious process AppData folder WriteConsoleW human activity check Windows ComputerName DNS DDNS
2 1 14.6 ZeroCERT

  • First
  • 1
  • Last
  • Total : 3cnts