Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1 2024-08-11 14:57 66b1b02a20b5a_cry.exe  

675922f5041b15ce59929f38b1798b3c


Malicious Library .NET framework(MSIL) UPX ScreenShot AntiDebug AntiVM PE File .NET EXE PE32 VirusTotal Malware PDB suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself
8.0 M 47 ZeroCERT

2 2024-08-08 14:40 66b1c36969eae_main.exe  

3d04dfed5185e2f62819f0951249e391


Client SW User Data Stealer LokiBot RedLine stealer ftp Client info stealer Malicious Library Antivirus .NET framework(MSIL) ASPack UPX Http API PWS HTTP Code injection Internet API AntiDebug AntiVM PE File .NET EXE PE32 OS Processor Check FTP Client Info Stealer VirusTotal Malware Telegram PDB suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI unpack itself Windows utilities Collect installed applications suspicious process malicious URLs sandbox evasion WriteConsoleW anti-virtualization installed browsers check Tofsee Windows Browser ComputerName DNS Software
2 5 3 18.2 M 48 ZeroCERT

  • First
  • 1
  • Last
  • Total : 2cnts