Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1966 2025-02-20 19:12 111.txt  

54fbe16bb5ff1ed4ef9ecdbfb97905ca


Suspicious_Script_Bin ScreenShot AntiDebug AntiVM VirusTotal Malware Check memory unpack itself
1.6 10 guest

1967 2025-02-20 12:26 cabalmain.exe  

b66b3067ed8dc4b46efc17cf619a7626


Gen1 Themida Generic Malware EnigmaProtector Malicious Library Malicious Packer Antivirus Downloader UPX Anti_VM PE File ftp DllRegisterServer dll PE32 OS Processor Check VirusTotal Malware
2.0 M 33 ZeroCERT

1968 2025-02-20 12:25 helper.exe  

9f365dcad65549bf48c4098e39a5a508


Themida Malicious Library UPX PE File .NET EXE PE32 VirusTotal Malware unpack itself Checks Bios Detects VMWare VMware anti-virtualization Firmware crashed
4.2 M 45 ZeroCERT

1969 2025-02-20 12:24 setupis.msi  

3571cbe8d39df8d0247c37287e5ac627


Generic Malware Malicious Library MSOffice File CAB OS Processor Check VirusTotal Malware suspicious privilege Check memory Checks debugger unpack itself AntiVM_Disk VM Disk Size Check ComputerName
5 2 2 1 2.6 M 23 ZeroCERT

1970 2025-02-20 05:08 putty.exe  

765bdc0f8bc0d77f7414e7a36ae45fd9


Generic Malware Malicious Library UPX PE File PE64 OS Processor Check FTP Client Info Stealer VirusTotal Malware Check memory Checks debugger unpack itself RCE Software
2.6 2 guest

1971 2025-02-20 03:54 scan_doc_000_371.js  

60aa9509a011433b98f1a3677183bfa9

VirusTotal Malware WMI ComputerName
1.4 6 guest

1972 2025-02-20 03:41 孟轩网1.0 64位.exe  

306cd3926c2c44af0a1882041f2ec95a


Gen1 Generic Malware UPX Malicious Library PE File PE64 MZP Format DLL OS Processor Check VirusTotal Malware MachineGuid Check memory Creates executable files unpack itself Checks Bios anti-virtualization ComputerName Software crashed
4.6 1 guest

1973 2025-02-20 03:26 cpa-back-2-15-25.txt  

253a78bdd5572b54ad8eabef88c0d67c


ScreenShot Anti_VM AntiDebug AntiVM Check memory unpack itself
1.0 guest

1974 2025-02-20 03:15 ssh.exe  

543fb58aa3b9120623a46dd6503f4688


Generic Malware Malicious Library Malicious Packer UPX PE File PE64 OS Processor Check PDB
0.2 guest

1975 2025-02-19 17:42 NDP461-KB3102436-x86-x64-AllOS...  

864056903748706e251fec9f5d887ef9


Gen1 Eredel Stealer Extended Emotet Generic Malware Suspicious_Script Malicious Library UPX Downloader MS_Excel_Hidden_Macro_Sheet Admin Tool (Sysinternals etc ...) .NET framework(MSIL) ASPack Malicious Packer PE File PE32 OS Processor Check MSOffice File Malware PDB suspicious privilege Check memory Checks debugger Creates executable files unpack itself Check virtual network interfaces AntiVM_Disk sandbox evasion VM Disk Size Check Ransomware ComputerName crashed
3 6.4 guest

1976 2025-02-19 15:21 소명자료 목록(국세징수법 시행규칙).hwp.lnk...  

99c67ce86170a2ba77f879c6a4061ad0


Generic Malware Suspicious_Script_Bin Antivirus AntiDebug AntiVM GIF Format Lnk Format PowerShell VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut unpack itself Windows utilities powershell.exe wrote suspicious process WriteConsoleW Windows ComputerName Cryptographic key
6.4 16 ZeroCERT

1977 2025-02-19 15:21 국가 망 보안체계 가이드라인(요약).lnk...  

084513677755c0e4b2cd57a5e68bbd3d


Generic Malware Antivirus AntiDebug AntiVM GIF Format Lnk Format VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut unpack itself powershell.exe wrote suspicious process WriteConsoleW Windows ComputerName Cryptographic key
5.4 19 ZeroCERT

1978 2025-02-19 15:21 (안보칼럼) 반국가세력에 안보기관이 무기력해서는 안된다...  

c09d17e968b250cadd66ec000d656d19


Generic Malware Suspicious_Script_Bin Antivirus AntiDebug AntiVM GIF Format Lnk Format VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut unpack itself Windows utilities powershell.exe wrote suspicious process WriteConsoleW Windows ComputerName Cryptographic key
6.4 13 ZeroCERT

1979 2025-02-19 12:09 DTQCxXZ.exe  

5cd741616410effcd71b9c0286292ab9


Lumma Stealer PE File PE32
ZeroCERT

1980 2025-02-19 12:07 random.exe  

094c83270e926b418dd431978ae802d8


RedLine Infostealer RedLine stealer RedlineStealer Malicious Library .NET framework(MSIL) UPX PE File .NET EXE PE32 OS Processor Check Check memory Checks debugger ICMP traffic unpack itself Check virtual network interfaces Windows DNS Cryptographic key
1 3.8 ZeroCERT