Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
136 2024-09-13 17:11 lfndsa.exe  

3b70f595f8cfd880ef64aff3d20a6bb2


Antivirus ScreenShot AntiDebug AntiVM PE File .NET EXE PE32 VirusTotal Malware PDB Code Injection Check memory Checks debugger buffers extracted unpack itself
7.4 40 ZeroCERT

137 2024-09-13 17:09 66e3d809bb461_lnfds.exe  

7481ff6db32ee36750c107dfa942550a


Antivirus ScreenShot AntiDebug AntiVM PE File .NET EXE PE32 VirusTotal Malware PDB Code Injection Check memory Checks debugger buffers extracted unpack itself
7.2 31 ZeroCERT

138 2024-09-13 17:09 66e3d964a96d8_lfndsa.exe  

b72fdd09e3b05fedfe301161ec109cec


Antivirus ScreenShot AntiDebug AntiVM PE File .NET EXE PE32 VirusTotal Malware PDB Code Injection Check memory Checks debugger buffers extracted unpack itself
7.2 30 ZeroCERT

139 2024-09-13 17:07 ghc7.exe  

8f0f4ac2337ac290e4cd09dde03664ce


Malicious Library UPX PE File PE64 OS Processor Check Check memory crashed
0.6 ZeroCERT

140 2024-09-13 13:46 svhost.exe  

ed8ca6f64f124f33a063e78fb985a74a


Malicious Library Malicious Packer UPX PE File PE64 VirusTotal Malware crashed
2.0 43 ZeroCERT

141 2024-09-13 13:45 Google%20Chrome.exe  

db3dada3b02dc0b7a0695709b654dbf1


Malicious Library Antivirus UPX PE File .NET EXE PE32 OS Processor Check VirusTotal Malware suspicious privilege MachineGuid Check memory Checks debugger unpack itself AntiVM_Disk VM Disk Size Check Windows ComputerName Cryptographic key
4.0 58 ZeroCERT

142 2024-09-13 09:50 66e2d83e11e31_lyla3.exe  

71d70566c254e26ed24562820527d5a9


Generic Malware Admin Tool (Sysinternals etc ...) UPX PE File PE32 DLL Malware download VirusTotal Malware Malicious Traffic AppData folder WriteConsoleW CryptBot ComputerName DNS
1 2 3 3.6 M 49 ZeroCERT

143 2024-09-13 09:47 sera.exe  

7696fd52645fd5bde71ca7eb4b2fa935


Stealc Gen1 Themida Generic Malware Malicious Library UPX Malicious Packer PE File PE32 DLL OS Processor Check Browser Info Stealer Malware download FTP Client Info Stealer Vidar VirusTotal Email Client Info Stealer Malware c&c Malicious Traffic Check memory Checks debugger Creates executable files unpack itself Checks Bios Collect installed applications Detects VMWare sandbox evasion VMware anti-virtualization installed browsers check Stealc Stealer Windows Browser Email ComputerName DNS Software crashed plugin
9 1 15 1 12.6 M 45 ZeroCERT

144 2024-09-13 09:43 MichaelKelley.pdf  

deefa371451c41584b2fa36f4b8cacd4


PDF
guest

145 2024-09-13 09:43 svhost2.exe  

5e670353e13a6c5de6c3acec90eef25e


Malicious Library Malicious Packer UPX PE File PE64 VirusTotal Malware crashed
1.6 M 20 ZeroCERT

146 2024-09-13 09:41 vghfw.exe  

3a507b0b6463481cbb8d248efa262ddd


Stealc Client SW User Data Stealer LokiBot ftp Client info stealer Antivirus Malicious Library Http API PWS HTTP Code injection Internet API AntiDebug AntiVM PE File .NET EXE PE32 FTP Client Info Stealer VirusTotal Malware Telegram PDB MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI unpack itself Windows utilities Collect installed applications suspicious process malicious URLs sandbox evasion WriteConsoleW anti-virtualization installed browsers check Tofsee Windows Browser ComputerName DNS Software
1 5 3 1 15.8 M 31 ZeroCERT

147 2024-09-13 09:39 999.html  

e0b11d0fba0e8c49d4f268e831bccc7a


Generic Malware Malicious Library Malicious Packer Antivirus UPX PE File ftp PE64 OS Processor Check VirusTotal Malware suspicious privilege Windows utilities WriteConsoleW Windows DNS
1 3.4 44 ZeroCERT

148 2024-09-13 09:38 useraccount.aspx  

b61f507b24ebcab3ea69135a21e18df5


Generic Malware Malicious Library UPX PE File DLL DllRegisterServer dll PE32 OS Processor Check VirusTotal Malware suspicious privilege Checks debugger unpack itself
2 2.6 M 40 ZeroCERT

149 2024-09-13 09:38 %E6%B5%99%E6%B1%9F%E8%BF%AA%E8...  

cf14880e3a7fba74c80f21685cd15718


Generic Malware Malicious Library ASPack UPX PE File PE32 OS Processor Check VirusTotal Malware Check memory Creates executable files crashed
2.0 M 44 ZeroCERT

150 2024-09-13 09:36 sfds.exe  

f24d1ef9ffb8be85e5b7f03262eb2e88


Stealc Client SW User Data Stealer Gen1 ftp Client info stealer Generic Malware Antivirus Malicious Library UPX Malicious Packer Http API PWS AntiDebug AntiVM PE File .NET EXE PE32 DLL OS Processor Check Browser Info Stealer Malware download FTP Client Info Stealer Vidar VirusTotal Email Client Info Stealer Malware c&c PDB Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files ICMP traffic unpack itself Collect installed applications suspicious process sandbox evasion WriteConsoleW anti-virtualization installed browsers check Tofsee Stealc Stealer Windows Browser Email ComputerName DNS Software plugin
9 4 18 2 15.2 M 31 ZeroCERT