Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
2251 2025-01-23 06:38 cred.dll  

2b999ca7b09926583ba69257303e073a


Generic Malware Malicious Library UPX Antivirus PE File DLL PE32 OS Processor Check Browser Info Stealer FTP Client Info Stealer Email Client Info Stealer Malware Cryptocurrency wallets Cryptocurrency suspicious privilege MachineGuid Malicious Traffic Check memory Checks debugger Creates shortcut unpack itself Windows utilities suspicious process sandbox evasion installed browsers check Windows Browser Email ComputerName DNS Cryptographic key Software
1 1 8.2 M ZeroCERT

2252 2025-01-23 06:36 iviewers.dll  

07fd51e1e8368144ea403137a671b84c


Generic Malware Downloader Malicious Library UPX Antivirus Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM PE File DLL DllRegisterS Malware powershell PDB suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files unpack itself Windows utilities Check virtual network interfaces suspicious process WriteConsoleW Windows ComputerName DNS Cryptographic key
2 1 9.2 M ZeroCERT

2253 2025-01-23 06:35 pomoykaXL.exe  

756219b350b87a85f693dccbbf4cbc1e


Generic Malware Malicious Library Malicious Packer VMProtect UPX Anti_VM AntiDebug AntiVM PE File PE64 OS Processor Check PE32 Code Injection Check memory Checks debugger buffers extracted unpack itself Windows utilities AppData folder Windows ComputerName
6.6 M ZeroCERT

2254 2025-01-23 06:34 mod.exe  

e9987ac76debe4d7c754f30cec95d618


Generic Malware UPX PE File .NET EXE PE32 suspicious privilege Check memory Checks debugger Creates executable files unpack itself Windows utilities AppData folder WriteConsoleW Creates autorun.inf human activity check Windows crashed
6.2 M ZeroCERT

2255 2025-01-23 06:31 clip64.dll  

f923f79b330a5bf8ccb3fda0f71a9c48


Amadey Generic Malware Malicious Library UPX PE File DLL PE32 OS Processor Check Malware Malicious Traffic Checks debugger unpack itself DNS
1 1 2.4 M ZeroCERT

2256 2025-01-23 06:28 Application_MSSQLSERVER_15457....  

877a1f9ba7dcd670a960c474de6e033a


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
4.2 guest

2257 2025-01-23 06:27 Application_MSSQLSERVER_15457....  

877a1f9ba7dcd670a960c474de6e033a


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
4.2 guest

2258 2025-01-23 06:27 Application_MSSQLSERVER_15457....  

877a1f9ba7dcd670a960c474de6e033a


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
3.6 guest

2259 2025-01-23 06:26 Junta de condóminos.pdf  

15eb3fc8327f53cc0d6ba8452af55d5f


PDF
guest

2260 2025-01-23 06:26 Application_MSSQLSERVER_15457....  

877a1f9ba7dcd670a960c474de6e033a


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
4.2 guest

2261 2025-01-23 06:25 Application_MSSQLSERVER_15457....  

877a1f9ba7dcd670a960c474de6e033a


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
4.2 guest

2262 2025-01-23 06:25 !!!!README.md  

d29ecd4233ef8075c1aacd944268f1e9


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
3.6 guest

2263 2025-01-23 06:23 !!!!README.md  

d29ecd4233ef8075c1aacd944268f1e9


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
4.2 guest

2264 2025-01-23 06:23 Windows-PowerShell_PowerShell_...  

b5caea4b8d6aeb6512c89a0d627c1580


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
4.2 guest

2265 2025-01-23 06:22 Windows-PowerShell_PowerShell_...  

a2c4e7a3f51ca62a4d4790a89fd3a38e


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
3.6 guest