Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
2056 2025-02-18 18:14 settings.gradle  

9c8e022315dce32d5e181eee0c2a7102


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
1 5.2 guest

2057 2025-02-18 18:13 bioldgefsawe.exe  

64b7d7b5bf9a966e05abf7e854c2de74


PE File PE64 VirusTotal Cryptocurrency Miner Malware unpack itself DNS CoinMiner
2 1 1.8 M 57 ZeroCERT

2058 2025-02-18 18:10 USDTFlash.exe  

378be7ffe9155f83b933ed13e765a447


njRAT backdoor Generic Malware Malicious Library Antivirus UPX PE File MSOffice File CAB PE32 OS Processor Check OS Name Check DLL VirusTotal Malware PDB suspicious privilege Check memory Checks debugger buffers extracted Creates executable files unpack itself AppData folder AntiVM_Disk suspicious TLD VM Disk Size Check Windows ComputerName RCE DNS Cryptographic key
1 1 6.2 M 41 ZeroCERT

2059 2025-02-18 18:07 build.gradle  

9e19a43480a7ac18bfc3165cc90a2bde


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
1 5.2 guest

2060 2025-02-18 18:07 mnyksdrfkesa.exe  

ac049a7ec076fa12e5a9b043347d710e


PE File PE32 VirusTotal Malware unpack itself ComputerName crashed
2.8 M 57 ZeroCERT

2061 2025-02-18 18:06 build.gradle  

9e19a43480a7ac18bfc3165cc90a2bde


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
1 5.2 guest

2062 2025-02-18 18:05 gradle.yml  

cace3b96ca31c3ae6f8573b9ab1cefa0


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
1 5.2 guest

2063 2025-02-18 18:04 horrxjddub.exe  

9034080ecb301060a2a69519198c3211


Generic Malware UPX PE File PE64 VirusTotal Malware MachineGuid Check memory Checks debugger unpack itself ComputerName
3.0 M 59 ZeroCERT

2064 2025-02-18 18:04 gradle.yml  

cace3b96ca31c3ae6f8573b9ab1cefa0


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
1 5.2 guest

2065 2025-02-18 18:02 feature_request.md  

4bbb0812310331153f28c0e0eebba33c


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
1 5.2 guest

2066 2025-02-18 18:02 bffgjingfr.exe  

34f0b37dd6049612720b5c35f6504f7b


PE File PE32 VirusTotal Malware unpack itself ComputerName crashed
2.8 M 60 ZeroCERT

2067 2025-02-18 18:01 bug_report.md  

22deaa2a857a964e2d6009a8daad2e19


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
1 5.2 guest

2068 2025-02-18 18:00 riroiciend.exe  

753175a2a378c1448b5e6946d2421599


Malicious Library PE File PE32 VirusTotal Malware AutoRuns Check memory Windows utilities suspicious process WriteConsoleW Windows ComputerName
4.2 M 59 ZeroCERT

2069 2025-02-18 18:00 feature_request.md  

4bbb0812310331153f28c0e0eebba33c


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
1 5.2 guest

2070 2025-02-18 17:59 bug_report.md  

22deaa2a857a964e2d6009a8daad2e19


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
1 5.2 guest