Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1711 2025-03-06 10:51 v6Oqdnc.exe  

6006ae409307acc35ca6d0926b0f8685


Themida UPX Anti_VM PE File PE32 VirusTotal Malware Checks debugger unpack itself Checks Bios Detects VMWare VMware anti-virtualization Windows DNS crashed
1 6.0 M 58 ZeroCERT

1712 2025-03-06 10:49 Document.pdf.url  

21cfb1ebc062da0d32e2805907d45476


AntiDebug AntiVM MSOffice File VirusTotal Malware Code Injection RWX flags setting unpack itself Windows utilities Windows DNS
2 4.6 7 ZeroCERT

1713 2025-03-06 10:49 deposit.exe  

bd986c4fbfc9ed95de22c3aa2d0747ae


njRAT backdoor Generic Malware Malicious Library Antivirus UPX PE File MSOffice File CAB PE32 OS Processor Check OS Name Check DLL VirusTotal Malware PDB suspicious privilege Check memory Checks debugger buffers extracted Creates executable files unpack itself AppData folder AntiVM_Disk VM Disk Size Check Windows ComputerName RCE Cryptographic key crashed
2 5.6 M 25 ZeroCERT

1714 2025-03-06 10:46 2c46c808-8f6c-45b3-8137-980983...  

a83c1c3f6750b43679b34eb20f3ffe71


Generic Malware Malicious Packer UPX PE File PE64 OS Processor Check VirusTotal Malware PDB
1.4 M 47 ZeroCERT

1715 2025-03-05 10:16 17wzez.ps1  

126ba2166352af938ba086ad7df1fbd8


Hide_EXE Generic Malware UPX Antivirus Malicious Library Malicious Packer Confuser .NET AntiDebug AntiVM PE File DLL PE32 .NET EXE Browser Info Stealer VirusTotal Malware powershell Buffer PE Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself powershell.exe wrote AppData folder Browser crashed
4 3 12.0 M 17 ZeroCERT

1716 2025-03-05 10:16 cssess.exe  

868c0a40cf4219a47ee081ade911a8f7


Process Kill Generic Malware Malicious Library FindFirstVolume CryptGenKey UPX PE File Device_File_Check PE32 OS Processor Check DLL Browser Info Stealer VirusTotal Malware Checks debugger buffers extracted Creates executable files unpack itself AppData folder Browser
20 5.8 M 51 ZeroCERT

1717 2025-03-05 10:14 beautifulmomentswithniceplaceg...  

e3068b8cc3613ac1d7b59b8eebab7a7d


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM VirusTotal Malware VBScript Code Injection Check memory wscript.exe payload download Creates executable files suspicious process malicious URLs DNS Dropper
1 3 10.0 7 ZeroCERT

1718 2025-03-05 10:14 morninghtaaaafilex.hta  

d07552e70fe8bb34a7c0231e04ca246a


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM VirusTotal Malware VBScript Code Injection Check memory wscript.exe payload download Creates executable files unpack itself suspicious process Dropper
1 2 10.0 M 3 ZeroCERT

1719 2025-03-05 10:12 server.exe  

6a3d1e12057da9877676b1c9e4ab03ac


Generic Malware Malicious Library Malicious Packer Antivirus UPX PE File PE32 OS Processor Check VirusTotal Malware Check memory suspicious TLD sandbox evasion Browser
2 2.8 M 63 ZeroCERT

1720 2025-03-05 09:19 RuntimeBroker.exe  

57145c33045ce67e1c1fe7c763438ab1


Malicious Library .NET framework(MSIL) UPX PE File .NET EXE PE32 OS Processor Check VirusTotal Malware Check memory Checks debugger unpack itself
2.0 M 63 guest

1721 2025-03-04 09:52 HMRC_Self_Assessment.pdf.lnk  

150b8a919ff51049aa765c2217fe4d50


Generic Malware Antivirus AntiDebug AntiVM GIF Format Lnk Format VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut RWX flags setting unpack itself powershell.exe wrote suspicious process Interception Windows ComputerName Cryptographic key
1 2 6.4 26 ZeroCERT

1722 2025-03-04 09:51 RE-8430940237206210.pdf.lnk  

beb1a61e973cb2f4b1fc1164b4ebc475


Generic Malware AntiDebug AntiVM GIF Format Lnk Format VirusTotal Malware Code Injection Check memory Creates shortcut unpack itself suspicious process
3.2 29 ZeroCERT

1723 2025-03-04 09:45 Acrobat.exe  

cc060d002d279752c9514571ed151706


njRAT backdoor Generic Malware Malicious Library Antivirus UPX PE File MSOffice File CAB PE32 OS Processor Check OS Name Check DLL VirusTotal Malware PDB suspicious privilege Check memory Checks debugger buffers extracted Creates executable files unpack itself AppData folder AntiVM_Disk VM Disk Size Check Windows ComputerName RCE DNS Cryptographic key crashed
1 6.2 23 ZeroCERT

1724 2025-03-04 09:34 XClient.exe  

dc5ec981b6e326d7b15c69bd871ace66


Antivirus UPX PE File .NET EXE PE32 OS Processor Check VirusTotal Malware suspicious privilege MachineGuid Check memory Checks debugger unpack itself AntiVM_Disk VM Disk Size Check ComputerName
3.8 M 57 ZeroCERT

1725 2025-03-04 09:32 Ext.exe  

1931fd02f375be6223b8b875fcfdacfd


Generic Malware Malicious Library .NET framework(MSIL) Malicious Packer UPX PE File .NET EXE PE32 OS Processor Check VirusTotal Malware Check memory Checks debugger unpack itself
2.0 58 ZeroCERT