Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
2026 2025-02-18 18:31 flilphbvd.exe  

c45149f1e680fd612c2922e3ca2b2487


PE File PE32 VirusTotal Malware crashed
2.2 M 57 ZeroCERT

2027 2025-02-18 18:30 htuiiaedjtra.exe  

7f30fbe94478e582f6fd680b009f7913


PE File PE32 VirusTotal Malware unpack itself ComputerName crashed
2.8 M 58 ZeroCERT

2028 2025-02-18 18:30 BetaCraft Launcher  

b64a80b34325c1fa6ce3a49ff8a89d95


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
1 5.2 guest

2029 2025-02-18 18:30 BetaCraft Launcher  

b64a80b34325c1fa6ce3a49ff8a89d95


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
1 5.2 guest

2030 2025-02-18 18:30 gradle.yml  

cace3b96ca31c3ae6f8573b9ab1cefa0


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
1 5.2 guest

2031 2025-02-18 18:30 Info.plist  

56ebcffeaaad2fe9baec066cd278ca9c


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection unpack itself Windows utilities malicious URLs Windows DNS
1 4.8 guest

2032 2025-02-18 18:30 PkgInfo  

c162b5333eece2dcb4fe2665e5b66d5b


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
1 5.2 guest

2033 2025-02-18 18:29 gradle.yml  

cace3b96ca31c3ae6f8573b9ab1cefa0


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
1 5.2 guest

2034 2025-02-18 18:29 eRemittance.exe  

5a74cb8603dc7543a6ca2b5a91369267


njRAT backdoor Generic Malware Malicious Library Antivirus UPX PE File MSOffice File CAB PE32 OS Processor Check OS Name Check DLL VirusTotal Malware PDB suspicious privilege Check memory Checks debugger buffers extracted Creates executable files unpack itself AppData folder AntiVM_Disk VM Disk Size Check Windows ComputerName RCE Cryptographic key
2 5.4 M 28 ZeroCERT

2035 2025-02-18 18:29 main.exe  

c1ab7781370290e0f7d8ea98705e8c84


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware PDB unpack itself DNS
2 2.6 M 36 ZeroCERT

2036 2025-02-18 18:21 pythiksdaw.exe  

e5a9ac4c2f128b4dda9c41a56cb221b1


Generic Malware Malicious Library PE File PE64 FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware Malicious Traffic Check memory buffers extracted unpack itself Tofsee Email Software
1 2 1 5.0 M 53 ZeroCERT

2037 2025-02-18 18:21 icon.icns  

dd555ff12fe4ecc24253344609786132


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
1 5.2 guest

2038 2025-02-18 18:21 icon.icns  

dd555ff12fe4ecc24253344609786132


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
1 5.2 guest

2039 2025-02-18 18:19 PkgInfo  

c162b5333eece2dcb4fe2665e5b66d5b


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
1 5.2 guest

2040 2025-02-18 18:19 setup_108.msi  

ce3c1ccbf868868cb94d24893e398870


Generic Malware Malicious Library MSOffice File CAB OS Processor Check VirusTotal Malware suspicious privilege Check memory Checks debugger unpack itself AntiVM_Disk VM Disk Size Check ComputerName
1 2 2.6 M 27 ZeroCERT