Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1741 2025-03-03 18:49 cred64.dll  

42139978003da9b45b1f569f3e7d5fbc


Generic Malware Malicious Library UPX Antivirus PE File DLL PE64 OS Processor Check Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware Cryptocurrency wallets Cryptocurrency PDB suspicious privilege MachineGuid Malicious Traffic Check memory Checks debugger Creates shortcut unpack itself Windows utilities suspicious process sandbox evasion installed browsers check Windows Browser Email ComputerName Cryptographic key Software
1 2 9.2 M 49 ZeroCERT

1742 2025-03-03 18:45 cred.dll  

fc52003eaa47548631ca1626dcb0ccdd


Generic Malware Malicious Library UPX PE File DLL PE32 OS Processor Check VirusTotal Malware Checks debugger unpack itself installed browsers check Browser crashed
2.0 M 37 ZeroCERT

1743 2025-03-03 18:44 clip64.dll  

d5ff455b2914702cfe1356d66f88d894


Amadey Generic Malware Malicious Library UPX PE File DLL PE32 OS Processor Check VirusTotal Malware Malicious Traffic Checks debugger unpack itself
1 2 3.0 M 47 ZeroCERT

1744 2025-03-03 18:43 service.exe  

7fca51d8fcd80ad7ee326f276d5a4ad3


Malicious Packer UPX PE File PE32 VirusTotal Malware unpack itself DNS
2 4.0 M 59 ZeroCERT

1745 2025-03-03 18:42 1337X-1.exe  

401fc7901ef8ff89309b69766fb38ccb


ScreenShot AntiDebug AntiVM PE File .NET EXE PE32 VirusTotal Malware Code Injection Check memory Checks debugger buffers extracted unpack itself crashed
8.6 M 56 ZeroCERT

1746 2025-03-03 18:42 rundrive.exe  

9218e5cad03c752f237ed87a9e52def4


Themida UPX Anti_VM PE File PE32 VirusTotal Malware AutoRuns Checks debugger unpack itself Checks Bios Detects VMWare VMware anti-virtualization Windows crashed
2 6.4 M 48 ZeroCERT

1747 2025-03-03 14:57 shell.hta  

9e964c9d47bed0f02f4cf55b858d20b8


Generic Malware Antivirus PowerShell VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut RWX flags setting unpack itself suspicious process Windows ComputerName DNS Cryptographic key
1 7.4 35 ZeroCERT

1748 2025-03-03 14:55 kinddevelopers.exe  

8199d03b6325b026657ac08f637e78de


Emotet Gen1 Generic Malware Malicious Library UPX Antivirus PE File PE64 CAB VirusTotal Malware powershell AutoRuns PDB suspicious privilege MachineGuid Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files unpack itself Check virtual network interfaces suspicious process WriteConsoleW Windows ComputerName RCE DNS Cryptographic key
1 1 10.8 35 ZeroCERT

1749 2025-03-03 14:55 tg01985462.exe  

ba4cfeb29c30566f0bb9f0e54763d2c6


Malicious Library UPX PE File .NET EXE PE32 Browser Info Stealer VirusTotal Malware Cryptocurrency wallets Cryptocurrency Buffer PE suspicious privilege Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces Ransomware Windows Browser ComputerName DNS Cryptographic key crashed
1 8.8 50 ZeroCERT

1750 2025-03-03 14:55 tg01985462ss.exe  

73ff439239900589550d046df99566f7


Emotet Gen1 Generic Malware Malicious Library UPX Antivirus PE File PE64 CAB VirusTotal Malware powershell AutoRuns PDB suspicious privilege MachineGuid Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files unpack itself powershell.exe wrote Check virtual network interfaces suspicious process WriteConsoleW Windows ComputerName RCE DNS Cryptographic key
1 1 11.4 39 ZeroCERT

1751 2025-03-03 14:54 rocktraining.exe  

7c39c4b2cad4ec54e0683879657c507a


Malicious Library .NET framework(MSIL) UPX PE File .NET EXE PE32 OS Processor Check Browser Info Stealer VirusTotal Malware Cryptocurrency wallets Cryptocurrency Buffer PE suspicious privilege Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces Ransomware Windows Browser ComputerName DNS Cryptographic key crashed
1 8.6 30 ZeroCERT

1752 2025-03-03 14:50 rocktrainingss.exe  

5cae6ec63c10893a71f48917fd993e3f


Emotet Gen1 Generic Malware Malicious Library UPX Antivirus PE File PE64 CAB VirusTotal Malware powershell AutoRuns PDB suspicious privilege MachineGuid Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files unpack itself Check virtual network interfaces suspicious process WriteConsoleW Windows ComputerName RCE DNS Cryptographic key
1 1 10.4 33 ZeroCERT

1753 2025-03-03 14:50 yoomcy.ps1  

b43cfcc4a181b4fd0d1b5d7287c63c30


Client SW User Data Stealer Backdoor RemcosRAT browser info stealer Hide_EXE Generic Malware Google Chrome User Data Downloader Antivirus Malicious Packer Confuser .NET Create Service Socket ScreenShot Escalate priviledges PWS Sniff Audio DNS Internet API VirusTotal Malware powershell Buffer PE suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself powershell.exe wrote AppData folder Windows DNS keylogger
1 14.8 26 ZeroCERT

1754 2025-03-03 14:49 Tuesdayconstraints.vbs  

46515ec0ad1711350ac2cbfc5cf23243


Generic Malware Antivirus VirusTotal Malware powershell suspicious privilege Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut unpack itself Check virtual network interfaces suspicious process WriteConsoleW Windows ComputerName Cryptographic key
1 2 9.6 11 ZeroCERT

1755 2025-03-03 14:48 alreadyorganization.exe  

66ed2aa11b67aff78c26493d40a94f5b


Malicious Library PE File .NET EXE PE32 VirusTotal Malware Buffer PE suspicious privilege Check memory Checks debugger buffers extracted unpack itself Windows ComputerName Cryptographic key crashed
4.4 47 ZeroCERT