Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1546 2025-03-16 09:26 9JFiKVm.exe  

25f00b7c2ff3ae44d849863c1e47b096


Generic Malware Malicious Library ASPack UPX PE File PE64 OS Processor Check VirusTotal Malware crashed
1.6 37 ZeroCERT

1547 2025-03-16 09:25 a.exe  

ac99aee743f8623ad844447ec7bcd7cf


Antivirus UPX PE File .NET EXE PE32 OS Processor Check VirusTotal Malware suspicious privilege MachineGuid Check memory Checks debugger unpack itself AntiVM_Disk VM Disk Size Check ComputerName
3.8 64 ZeroCERT

1548 2025-03-16 09:24 moneynew.exe  

65031a92d69a9743ad975b9908f227ee


AgentTesla Malicious Library Malicious Packer UPX PE File OS Memory Check .NET EXE PE32 OS Processor Check OS Name Check Browser Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Malicious Traffic Check memory Checks debugger unpack itself Check virtual network interfaces IP Check Browser Email ComputerName DNS crashed
1 2 2 6.0 55 ZeroCERT

1549 2025-03-16 09:23 BRAINN.exe  

7e813e26f8bfecc125db784dcee4fffb


Malicious Library Antivirus UPX PE File .NET EXE PE32 OS Processor Check GIF Format Lnk Format VirusTotal Malware AutoRuns suspicious privilege MachineGuid Check memory Checks debugger Creates shortcut Creates executable files unpack itself AppData folder AntiVM_Disk VM Disk Size Check Windows ComputerName keylogger
6.2 56 ZeroCERT

1550 2025-03-16 09:23 EMAIL.exe  

1d6485deef98e3e3ffd59ec9e2815771


AgentTesla Malicious Library Malicious Packer UPX PE File OS Memory Check .NET EXE PE32 OS Processor Check OS Name Check Browser Info Stealer Malware download VirusTotal Email Client Info Stealer Malware AgentTesla suspicious privilege Malicious Traffic Check memory Checks debugger unpack itself Check virtual network interfaces IP Check Windows Browser Email ComputerName DNS crashed
1 4 4 7.6 32 ZeroCERT

1551 2025-03-16 09:22 BELIEVVE.exe  

2ec0e8114c49cba545e0cfd5e4a12ddf


AgentTesla Malicious Library Malicious Packer UPX PE File OS Memory Check .NET EXE PE32 OS Processor Check OS Name Check Browser Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Malicious Traffic Check memory Checks debugger unpack itself Check virtual network interfaces IP Check Browser Email ComputerName DNS crashed
1 2 2 6.0 56 ZeroCERT

1552 2025-03-16 09:21 RUNPEE.dll  

7ec98569bccb06d6a5a9cac7891a5228


Malicious Library Confuser .NET PE File DLL PE32 .NET DLL VirusTotal Malware
1.2 M 49 ZeroCERT

1553 2025-03-16 09:20 random.exe  

232500ef245c58b966a8c2e3b01fcd2a


Themida Admin Tool (Sysinternals etc ...) UPX PE File PE32 VirusTotal Malware Checks debugger unpack itself Checks Bios Detects VMWare VMware anti-virtualization Windows crashed
5.4 M 49 ZeroCERT

1554 2025-03-16 09:19 random.exe  

6bbb3762b42f726dfc7c98e82828503e


Emotet UPX Malicious Library PE File PE64 .NET EXE PE32 VirusTotal Malware AutoRuns suspicious privilege Check memory Checks debugger Creates shortcut Creates executable files unpack itself Detects VirtualBox AntiVM_Disk sandbox evasion VMware anti-virtualization VM Disk Size Check installed browsers check Windows Browser ComputerName
10.8 M 52 ZeroCERT

1555 2025-03-16 09:17 ZqkKpwG.exe  

2903fdf791b5c089eba36c8cab5079bb


Generic Malware Malicious Library UPX ScreenShot AntiDebug AntiVM PE File PE32 OS Processor Check VirusTotal Malware Code Injection buffers extracted unpack itself
7.8 55 ZeroCERT

1556 2025-03-16 09:15 TempSpoofer.exe  

f111dfee984789e3f1bc348f761f0299


Antivirus UPX PE File .NET EXE PE32 VirusTotal Malware MachineGuid Check memory Checks debugger unpack itself
2.2 54 ZeroCERT

1557 2025-03-14 14:24 newworldbestsupportingthings.h...  

19edaef8096f34e2ce49f55960c3add4


Generic Malware Antivirus Downloader AntiDebug AntiVM PE File DLL PE32 .NET DLL VirusTotal Malware powershell suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger Creates shortcut Creates executable files RWX flags setting unpack itself Windows utilities powershell.exe wrote suspicious process AppData folder Windows ComputerName DNS Cryptographic key
1 1 11.2 M 30 ZeroCERT

1558 2025-03-14 11:19 ENCRYPTION01.jpg.exe  

b1facd7b22f3fe280afd23f0535185c5


North Korea Malicious Library Malicious Packer UPX PE File DLL PE32 OS Processor Check .NET DLL VirusTotal Malware
1.2 43 ZeroCERT

1559 2025-03-14 11:15 ApiDocs.pdf.lnk  

152074821c93c6f1e3f2638f803c3b26


Generic Malware Antivirus AntiDebug AntiVM GIF Format Lnk Format PowerShell VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut unpack itself suspicious process WriteConsoleW Windows ComputerName Cryptographic key
2 6.0 27 ZeroCERT

1560 2025-03-14 11:14 DE-10192.pdf.lnk  

d13c6bf0d56449fd952a8e26bb040fae


Generic Malware Antivirus AntiDebug AntiVM GIF Format Lnk Format PNG Format MSOffice File JPEG Format VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut RWX flags setting unpack itself Windows utilities powershell.exe wrote Check virtual network interfaces suspicious process AntiVM_Disk WriteConsoleW VM Disk Size Check Tofsee Windows ComputerName Cloudflare DNS Cryptographic key
3 6 4 10.6 15 ZeroCERT