Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
21886 2023-01-25 03:53 vbc.exe  

8b6193b8dfdc920cd6bb65d6fc020104


RAT PE32 .NET EXE PE File VirusTotal Malware Check memory Checks debugger unpack itself ComputerName
1.8 M 27 ZeroCERT

21887 2023-01-25 03:44 nueva investigaci_n 0102308663...  

b2942cf780aaf78c38c3e36873449b27


Generic Malware VBA_macro MSOffice File Malware download VirusTotal Malware Malicious Traffic exploit crash unpack itself Windows Exploit DNS crashed Downloader
1 7 3.4 M 33 ZeroCERT

21888 2023-01-24 07:44 zrNWerftneVBTXe300us.exe  

f1e51386c9314a29be31514ef07849ed


PWS[m] RedLine stealer[m] PWS .NET framework Admin Tool (Sysinternals etc ...) UPX AntiDebug AntiVM PE32 .NET EXE PE File VirusTotal Malware Code Injection Check memory Checks debugger buffers extracted unpack itself Windows DNS Cryptographic key
1 9.0 M 56 guest

21889 2023-01-24 03:52 2.exe  

294fab1523dc3b50cbcc120e67946a5b


Malicious Library UPX PE32 OS Processor Check PE File VirusTotal Malware DNS
1 3.4 M 56 guest

21890 2023-01-22 19:03 scripts.rar  

4d9dc9d182a619562ded752b00c8fce0


AntiDebug AntiVM Email Client Info Stealer suspicious privilege Checks debugger Creates shortcut unpack itself installed browsers check Browser Email ComputerName
3.4 guest

21891 2023-01-22 16:08 Lionli.exe  

1abe6fed7582e3d4acdbab801d9a48cb


AgentTesla PWS[m] RAT Ave Maria WARZONE RAT Gen2 Trojan_PWS_Stealer browser info stealer Generic Malware Credential User Data Google Chrome Downloader Malicious Library VMProtect UPX Malicious Packer SQLite Cookie Create Service DGA S Browser Info Stealer Malware download Amadey VirusTotal Malware AutoRuns suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates executable files exploit crash unpack itself Windows utilities suspicious process AppData folder malicious URLs WriteConsoleW installed browsers check Tofsee Windows Exploit Browser ComputerName DNS crashed
13 16 8 11 17.4 M 42 ZeroCERT

21892 2023-01-22 16:06 KoverV2_launch.exe  

c536233b2a3d1b3684234d7a06e3c13b


Gen1 Malicious Library UPX Anti_VM OS Processor Check PE File PE64 DLL VirusTotal Malware Check memory Creates executable files
1.2 M 5 ZeroCERT

21893 2023-01-22 16:03 stown1.exe  

b00fe17fccad1c5f877029217da5c175


Malicious Library VMProtect UPX PE32 PE File Browser Info Stealer FTP Client Info Stealer VirusTotal Malware suspicious privilege Malicious Traffic Check memory Checks debugger buffers extracted WMI unpack itself Collect installed applications Check virtual network interfaces installed browsers check Tofsee Windows Browser ComputerName Cryptographic key Software crashed
1 4 1 8.4 M 24 ZeroCERT

21894 2023-01-22 16:00 love1.exe  

68e8e72cf791f738b1574ae25bcbd45b


RAT PWS .NET framework UPX PE32 OS Processor Check .NET EXE PE File Browser Info Stealer FTP Client Info Stealer VirusTotal Malware suspicious privilege Check memory Checks debugger buffers extracted unpack itself Collect installed applications installed browsers check Windows Browser ComputerName DNS Cryptographic key Software crashed
1 6.2 M 48 ZeroCERT

21895 2023-01-22 15:58 HouseGC.exe  

25689b70c4489c2dc929df698c2245ee


Gen1 Emotet Generic Malware Malicious Library UPX Antivirus PE32 CAB PE File VirusTotal Malware powershell AutoRuns PDB suspicious privilege Check memory Checks debugger Creates shortcut Creates executable files unpack itself Windows utilities powershell.exe wrote suspicious process AntiVM_Disk WriteConsoleW VM Disk Size Check Windows ComputerName RCE DNS Cryptographic key
3 7.4 M 22 ZeroCERT

21896 2023-01-22 15:56 nesto.exe  

e2e2c3cd2985a86a0a3687eff8b396fe


Malicious Library UPX PE32 OS Processor Check PE File PDB unpack itself Windows crashed
1.8 M ZeroCERT

21897 2023-01-22 15:54 tanos.exe  

1d71ce85fb4517119a51fc33910f1975


RAT PWS .NET framework UPX PE32 OS Processor Check .NET EXE PE File Browser Info Stealer FTP Client Info Stealer VirusTotal Malware suspicious privilege Check memory Checks debugger buffers extracted unpack itself Collect installed applications installed browsers check Windows Browser ComputerName RCE DNS Cryptographic key Software crashed
2 1 6.2 M 44 ZeroCERT

21898 2023-01-22 15:50 stown3.exe  

97956e63f5d77b8ddcbed50c7765b4cd


RAT PWS .NET framework UPX PE32 OS Processor Check .NET EXE PE File Browser Info Stealer FTP Client Info Stealer VirusTotal Malware suspicious privilege Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Collect installed applications Check virtual network interfaces installed browsers check Tofsee Windows Browser ComputerName Cryptographic key Software crashed
1 4 1 6.8 M 46 ZeroCERT

21899 2023-01-22 15:48 bebra.exe  

7c3c33a79f460a4536433f5ba99b3fcd


Generic Malware Malicious Packer Malicious Library UPX PE File PE64 VirusTotal Malware crashed
1.4 M 45 ZeroCERT

21900 2023-01-22 15:45 NoNameProc.exe  

4ea2c030393e9e918bae4c1989c1e05f


Gen2 Malicious Library UPX Antivirus OS Processor Check PE File PE64 DLL VirusTotal Malware PDB Creates executable files WriteConsoleW RCE
3.2 M 5 ZeroCERT