Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
18031 2023-05-05 06:59 {54235D70-18D0-41D4-B34B-D968F...  

d41d8cd98f00b204e9800998ecf8427e


AntiDebug AntiVM Email Client Info Stealer suspicious privilege Checks debugger Creates shortcut unpack itself installed browsers check Browser Email ComputerName
3.4 guest

18032 2023-05-05 06:53 WindowsUpdate.log  

2cc83d93dd1dde691158cf5e9882420b


ScreenShot AntiDebug AntiVM Check memory unpack itself
1.0 guest

18033 2023-05-05 06:46 chatverlauf jasmin.txt  

ca29b214d1a9a341e9d3c82b3f5f490b


ScreenShot AntiDebug AntiVM Check memory unpack itself
1.0 guest

18034 2023-05-04 18:44 vbc.exe  

66d9a44a51599155c7a39a9a5a9dafa9


UPX Malicious Library OS Processor Check PE32 PE File VirusTotal Malware PDB
1 1.8 44 ZeroCERT

18035 2023-05-04 18:03 vbc.exe  

9fe535a2512484cbf82fdb18f50fd740


RAT .NET EXE PE32 PE File VirusTotal Malware Check memory Checks debugger unpack itself Check virtual network interfaces Tofsee Windows ComputerName
2 1 3.8 M 40 ZeroCERT

18036 2023-05-04 18:01 %23%23%23%23%23%23%23%23%23%23...  

f51ba77ad7935cf732fc2fc5df33d75b


MS_RTF_Obfuscation_Objects RTF File doc Malware download VirusTotal Malware Malicious Traffic exploit crash unpack itself Windows Exploit DNS crashed Downloader
1 3 7 4.4 M 29 ZeroCERT

18037 2023-05-04 18:01 Halkbank.exe  

43da6da02ab057b4b4b100c727b3fc69


AgentTesla Emotet browser info stealer Generic Malware Google Chrome User Data Downloader UPX Malicious Library Create Service Socket DNS PWS[m] Sniff Audio Internet API Escalate priviledges KeyLogger AntiDebug AntiVM OS Processor Check PE32 PE File Remcos VirusTotal Malware Buffer PE AutoRuns PDB Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows RCE DNS DDNS keylogger
1 4 3 12.6 M 46 ZeroCERT

18038 2023-05-04 17:59 %23%23%23%23%23%23%23%23%23%23...  

7f8045b2c78195d846d5622d65574cf5


MS_RTF_Obfuscation_Objects RTF File doc Malware download VirusTotal Malware Malicious Traffic buffers extracted RWX flags setting exploit crash Exploit DNS crashed Downloader
1 1 3 4.8 M 29 ZeroCERT

18039 2023-05-04 17:59 distributive095.exe  

5a2548ee26c5b3613a8096befe770a0f


CoinMiner Generic Malware UPX Malicious Library Antivirus OS Processor Check PE32 PE File VirusTotal Malware suspicious privilege Check memory Checks debugger Creates shortcut unpack itself AppData folder Windows ComputerName Cryptographic key
5 2 1 3.8 21 ZeroCERT

18040 2023-05-04 17:56 %23%23%23%23%23%23%23%23%23%23...  

5ee93a1d15d2d02268cf4755b7b5d7db


MS_RTF_Obfuscation_Objects RTF File doc Malware download VirusTotal Malware Malicious Traffic exploit crash unpack itself Windows Exploit DNS crashed Downloader
2 1 7 1 5.0 M 27 ZeroCERT

18041 2023-05-04 17:36 rmq2.sqlite  

8bd6d529d731d52f498bac4f35ebe61b


AntiDebug AntiVM Email Client Info Stealer suspicious privilege Checks debugger Creates shortcut unpack itself installed browsers check Browser Email ComputerName
3.8 BRY

18042 2023-05-04 10:07 notice_may.3_23377.lnk  

af543d8033c932f504f309c0d9760cbc


RAT Generic Malware AntiDebug AntiVM OS Processor Check GIF Format VirusTotal Malware Code Injection Check memory Creates shortcut RWX flags setting suspicious process Tofsee Interception
1 2 3 3.6 19 ZeroCERT

18043 2023-05-04 10:05 Zlfrtg.js  

ea9ec000cbfecab623bfe5856a13b673


Generic Malware Antivirus AntiDebug AntiVM PowerShell powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut unpack itself suspicious process Windows ComputerName Cryptographic key
3 5.6 ZeroCERT

18044 2023-05-04 10:03 Oar.js  

e524b5c0bdf43ce16919e7d0f2d4beb9


Generic Malware Antivirus AntiDebug AntiVM PowerShell powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut unpack itself suspicious process Windows ComputerName Cryptographic key
3 5.6 ZeroCERT

18045 2023-05-04 10:00 vdcs.exe  

5a6929c141164830993b2c604e14a2a2


UPX Malicious Library OS Processor Check PE32 PE File Check memory RWX flags setting unpack itself anti-virtualization crashed
2.4 guest