Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1741 2024-08-01 08:37 ber.exe  

40b5cfe2ff96cd0f16a0af393ac8b039


Lumma Stealer UPX PE File PE32
ZeroCERT

1742 2024-08-01 02:05 141532.php  

e25219536e1f96b52b090a9e8a05620f

unpack itself crashed
0.6 guest

1743 2024-08-01 02:05 141532.php  

e25219536e1f96b52b090a9e8a05620f

crashed
0.2 guest

1744 2024-07-31 23:18 azmid170.exe  

8a7e8d21f7790b63abb22853ccb0178c


Emotet Malicious Library UPX ScreenShot KeyLogger AntiDebug AntiVM PE File PE32 Lnk Format GIF Format OS Processor Check DllRegisterServer dll suspicious privilege Code Injection Check memory Checks debugger Creates shortcut Creates executable files unpack itself AntiVM_Disk VM Disk Size Check ComputerName
4.0 guest

1745 2024-07-31 23:06 InstallAAAwave.exe  

47781e2f67d75de26c08227ef50a1da5


Emotet Gen1 Generic Malware UPX Antivirus Malicious Library PE File PE32 MZP Format Lnk Format GIF Format DllRegisterServer dll DLL BMP Format OS Processor Check VirusTotal Malware Check memory Creates shortcut Creates executable files RWX flags setting unpack itself AntiVM_Disk VM Disk Size Check ComputerName crashed
4.2 1 guest

1746 2024-07-31 21:37 dssdj.exe  

b78013e1727d77333e2780e95d064b4b


Malicious Library UPX PE File PE32 MZP Format DLL DllRegisterServer dll VirusTotal Malware Check memory Creates executable files unpack itself AppData folder AntiVM_Disk VM Disk Size Check crashed
3.0 1 guest

1747 2024-07-31 14:55 23.exe  

367009ea6fe948f4c0773f4cd1274a5f


Admin Tool (Sysinternals etc ...) UPX AntiDebug AntiVM PE File PE32 Malware download AsyncRAT NetWireRC VirusTotal Malware Cryptocurrency wallets Cryptocurrency suspicious privilege Code Injection Check memory Checks debugger buffers extracted WMI RWX flags setting unpack itself Ransomware Windows ComputerName DNS Cryptographic key
2 3 5 1 12.4 M 30 ZeroCERT

1748 2024-07-31 14:53 3007f.hta  

d7690e8539ac10edbe4099d361fb7cb5


Generic Malware Antivirus Admin Tool (Sysinternals etc ...) UPX AntiDebug AntiVM PowerShell PE File PE32 Malware download Malware powershell suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files RWX flags setting unpack itself powershell.exe wrote Check virtual network interfaces suspicious process AppData folder WriteConsoleW Tofsee Windows ComputerName DNS Cryptographic key
6 7 9 3 15.8 ZeroCERT

1749 2024-07-31 14:45 Ledger Backup Guide.pdf.lnk  

2f7d198bd913d4694467e2ded0e55ead


Generic Malware Antivirus Admin Tool (Sysinternals etc ...) UPX AntiDebug AntiVM Lnk Format GIF Format PowerShell PE File PE32 Malware download AsyncRAT NetWireRC Vulnerability VirusTotal Malware VBScript Cryptocurrency wallets Cryptocurrency powershell suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates shortcut Creates executable files RWX flags setting unpack itself powershell.exe wrote Check virtual network interfaces suspicious process AppData folder WriteConsoleW Tofsee Ransomware Interception Windows Exploit ComputerName Trojan DNS Cryptographic key
4 8 19 19.4 11 ZeroCERT

1750 2024-07-31 10:34 iamworkingonentirethingstobeba...  

c1770981e03dda36b16f52acb050e99a


MS_RTF_Obfuscation_Objects RTF File doc VirusTotal Malware exploit crash Exploit DNS crashed
2 1 4.8 M 36 ZeroCERT

1751 2024-07-31 10:26 au.js  

dbe4c84c471b795ec32210638cd177cd


Malicious Library Malicious Packer .NET framework(MSIL) UPX PE File .NET EXE PE32 Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware Telegram suspicious privilege Malicious Traffic Check memory Checks debugger Creates executable files unpack itself Check virtual network interfaces AppData folder IP Check Tofsee Windows Browser Email ComputerName DNS Cryptographic key DDNS Software crashed keylogger
2 7 9 11.6 16 ZeroCERT

1752 2024-07-31 10:26 Archive.js  

d24a4b4852a8485e74220ee5979f2884


Generic Malware Antivirus ActiveXObject PowerShell VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Check virtual network interfaces suspicious process WriteConsoleW Tofsee Windows ComputerName Cryptographic key
2 2 1 7.0 4 ZeroCERT

1753 2024-07-31 10:26 iamworkingonentirethingstobeba...  

c1770981e03dda36b16f52acb050e99a


MS_RTF_Obfuscation_Objects RTF File doc VirusTotal Malware exploit crash unpack itself Exploit DNS crashed
1 5.2 M 36 ZeroCERT

1754 2024-07-31 10:24 Invoice-2024-07-29.url  

123301099bd2b21b2b13bddb06c940dc


AntiDebug AntiVM URL Format Code Injection exploit crash unpack itself Windows utilities Tofsee Windows Exploit DNS crashed
3 1 8 3.4 M ZeroCERT

1755 2024-07-31 10:24 mywifeisbeautifull.vbs  

02b6b577cf925689c42545770b951ac6


Generic Malware Antivirus PowerShell VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Check virtual network interfaces suspicious process WriteConsoleW Tofsee Windows ComputerName Cryptographic key
2 2 1 7.2 M 11 ZeroCERT