Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
15091 2021-11-08 12:28 sefile.exe  

04bc789722301c03d826568701fed0a5


Malicious Library UPX PE File OS Processor Check PE32 VirusTotal Malware PDB unpack itself
2.4 32 ZeroCERT

15092 2021-11-08 12:28 spho.exe  

ac8d80e539e4db0a1cddaf2a0910949d


Malicious Library UPX PE File OS Processor Check PE32 PDB unpack itself
1.4 ZeroCERT

15093 2021-11-08 12:31 2071_1636218096_552.exe  

6441aef8da572f0501246046025c003b


Emotet Malicious Library UPX Create Service DGA Socket Steal credential DNS Internet API Hijack Network Code injection Sniff Audio HTTP KeyLogger FTP Escalate priviledges Downloader ScreenShot Http API P2P persistence AntiDebug AntiVM PE File PE32 OS Proc VirusTotal Malware Buffer PE AutoRuns PDB Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities AppData folder malicious URLs AntiVM_Disk WriteConsoleW VM Disk Size Check Windows Remote Code Execution Cryptographic key
3 11.0 25 ZeroCERT

15094 2021-11-08 12:33 xxluchxx1.exe  

95ade411c615e066135067660aef5702


RAT PWS .NET framework Generic Malware UPX PE File OS Processor Check PE32 .NET EXE Browser Info Stealer FTP Client Info Stealer VirusTotal Malware suspicious privilege Check memory Checks debugger buffers extracted unpack itself Collect installed applications installed browsers check Windows Browser ComputerName DNS Cryptographic key Software crashed
1 6.2 48 ZeroCERT

15095 2021-11-08 13:15 asfas.exe  

41f68b65d2af9150b1069b9a94f41e5a


Generic Malware PE64 PE File VirusTotal Malware
1.6 45 ZeroCERT

15096 2021-11-08 13:15 14_1636285969_2601.exe  

ffef345f076a459904f170f533febe3f


RAT Generic Malware UPX PE File PE32 .NET EXE VirusTotal Malware MachineGuid Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces Tofsee crashed
1 2 1 4.4 34 ZeroCERT

15097 2021-11-08 13:15 server.asp  

ce81eed854cece7bf84332694f26943f


Generic Malware Antivirus Malicious Packer Malicious Library UPX PE File PE32 .NET EXE GIF Format OS Processor Check VirusTotal Malware Buffer PE PDB Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates shortcut Creates executable files unpack itself Check virtual network interfaces AppData folder AntiVM_Disk VM Disk Size Check human activity check Tofsee Windows ComputerName crashed
3 2 1 9.0 12 ZeroCERT

15098 2021-11-08 13:15 6703_1636277141_5925.exe  

70af2782a658f04e84341f18e09207ae


RAT PWS .NET framework Generic Malware UPX Antivirus ASPack Malicious Packer Malicious Library AntiDebug AntiVM PE File PE32 .NET EXE Browser Info Stealer FTP Client Info Stealer AutoRuns suspicious privilege MachineGuid Code Injection Check memory Checks debugger buffers extracted Creates shortcut Creates executable files unpack itself Windows utilities Disables Windows Security Collect installed applications suspicious process AppData folder sandbox evasion WriteConsoleW installed browsers check Windows Browser ComputerName DNS Cryptographic key Software crashed
1 17.2 ZeroCERT

15099 2021-11-08 13:17 1814_1636273168_4285.exe  

1dc8f380fd88f8ae7ec7ff724cb87f8e


Malicious Library UPX PE File OS Processor Check PE32 VirusTotal Malware PDB unpack itself
2.6 43 ZeroCERT

15100 2021-11-08 13:19 sefile2.exe  

0742a9d7aa05cf88cc3577114e5c0592


Malicious Library UPX PE File OS Processor Check PE32 VirusTotal Malware PDB unpack itself
2.4 33 ZeroCERT

15101 2021-11-08 13:22 HYnGsbePx.exe  

4c6e680bb084e1421378b0f88287baba


RAT PWS .NET framework Generic Malware UPX PE File OS Processor Check PE32 .NET EXE VirusTotal Malware Check memory Checks debugger unpack itself Windows DNS Cryptographic key
1 4.4 29 ZeroCERT

15102 2021-11-08 13:24 RuntimeBroker.exe  

c86235ec2e69ecdcd4a738b6903981a0


Gen2 Malicious Library UPX PE64 PE File OS Processor Check VirusTotal Malware Creates shortcut
1.6 50 ZeroCERT

15103 2021-11-08 13:30 Stimulations.exe  

e50c245e0ea8af20e4d3553a2a547890


RAT Generic Malware Malicious Library UPX PE File OS Processor Check PE32 PE64 VirusTotal Malware PDB Check memory Checks debugger Creates executable files unpack itself
2.4 16 ZeroCERT

15104 2021-11-08 13:31 gTiBAFGxjBXmnkn.mp3  

e44025fdc31cdce162ed7573b6c501f5


Malicious Library PE File PE32 DLL VirusTotal Malware unpack itself Windows crashed
2.8 44 ZeroCERT

15105 2021-11-08 13:37 gTiBAFGxjBXmnkn.mp3  

e44025fdc31cdce162ed7573b6c501f5


Malicious Library PE File PE32 DLL VirusTotal Malware unpack itself Windows crashed
2.8 44 guest