Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
22786 2022-12-23 12:19 Apple-advanced-security-Securi...  

8811cbe5c356e303445c4225396eb362


JPEG Format
Dr

22787 2022-12-23 12:14 Apple-advanced-security-iMessa...  

85f75da5aa64776a5c3ceb63bee1eb29


JPEG Format
Dr

22788 2022-12-23 12:13 https://drive.google.com/file/...  

49af2c036b586087ffb8cd1eba203d5f


AntiDebug AntiVM MSOffice File icon Code Injection RWX flags setting exploit crash unpack itself Windows utilities Windows Exploit Advertising Google DNS crashed
7 8 4.2 Dr

22789 2022-12-23 09:33 2.exe  

19a196e6f3b44ea54ac799f9d3b8bf4c


Malicious Library UPX PE32 OS Processor Check PE File unpack itself WriteConsoleW
0.6 ZeroCERT

22790 2022-12-23 09:33 neodorg.exe  

0223a90542804f48456181877f485cf8


Emotet Malicious Library UPX PE32 PE File OS Processor Check VirusTotal Malware AutoRuns Check memory Creates executable files unpack itself AppData folder Windows crashed
3.6 17 ZeroCERT

22791 2022-12-23 09:33 Shipping Document_PDF.exe  

f74233b5b2577954ebf420a641342323


PWS[m] PWS .NET framework SMTP KeyLogger AntiDebug AntiVM PE File PE64 VirusTotal Malware PDB suspicious privilege MachineGuid Code Injection Check memory Checks debugger buffers extracted unpack itself Windows ComputerName crashed
8.8 38 guest

22792 2022-12-23 08:09 ra.exe  

1466f001f010dfed5838484c2fb25a56


PWS[m] NPKI RAT Generic Malware task schedule Downloader Antivirus ScreenShot Create Service DGA Socket DNS Internet API Code injection Sniff Audio HTTP Steal credential KeyLogger P2P Escalate priviledges FTP Http API AntiDebug AntiVM PE32 .NET EXE PE Fil Browser Info Stealer FTP Client Info Stealer VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates shortcut Creates executable files unpack itself Check virtual network interfaces suspicious process AntiVM_Disk WriteConsoleW IP Check VM Disk Size Check human activity check installed browsers check Windows Browser ComputerName DNS Cryptographic key Software crashed
22 5 18.4 M 23 ZeroCERT

22793 2022-12-23 08:04 w.exe  

20fffabcc7b65bd421a0033d6b6940c4


RedLine stealer[m] UPX AntiDebug AntiVM PE32 OS Processor Check PE File Browser Info Stealer FTP Client Info Stealer VirusTotal Malware Buffer PE suspicious privilege Code Injection Check memory Checks debugger buffers extracted WMI unpack itself Collect installed applications installed browsers check Windows Browser ComputerName DNS Cryptographic key Software crashed
1 11.6 13 ZeroCERT

22794 2022-12-23 08:03 r.exe  

c1adaf98f8c567048839897999f84f9c


RedLine stealer[m] UPX AntiDebug AntiVM PE32 OS Processor Check PE File Browser Info Stealer FTP Client Info Stealer VirusTotal Malware Buffer PE suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI unpack itself Collect installed applications Check virtual network interfaces installed browsers check Windows Browser ComputerName Cryptographic key Software crashed
1 4 11.6 14 ZeroCERT

22795 2022-12-23 08:00 s.exe  

4e0418c46e7b3e9983f4e52a95262fcf


RedLine stealer[m] UPX AntiDebug AntiVM PE32 OS Processor Check PE File Browser Info Stealer VirusTotal Malware Buffer PE suspicious privilege Code Injection Check memory Checks debugger buffers extracted WMI unpack itself Collect installed applications installed browsers check Windows Browser ComputerName DNS Cryptographic key crashed
1 10.4 14 ZeroCERT

22796 2022-12-23 07:52 m.exe  

590167981561a80410867f08935a0584


RAT PE File PE64 VirusTotal Malware Check memory Checks debugger unpack itself Windows Cryptographic key
2.0 M 18 ZeroCERT

22797 2022-12-23 07:50 h.exe  

983ed231bdab4d132bfbef694e74ebc1


RedLine stealer[m] UPX AntiDebug AntiVM PE32 OS Processor Check PE File Browser Info Stealer VirusTotal Malware Buffer PE suspicious privilege Code Injection Check memory Checks debugger buffers extracted WMI unpack itself Collect installed applications installed browsers check Windows Browser ComputerName DNS Cryptographic key crashed
1 10.4 12 ZeroCERT

22798 2022-12-23 07:48 qqq.exe  

2172be04585d32a1519d77f6b1eff10f


Generic Malware Malicious Library Malicious Packer UPX PE File PE64 VirusTotal Malware crashed
0.8 17 ZeroCERT

22799 2022-12-23 07:48 x64.dll  

69a0292a5d5ab37365a448feb4238c1f


Malicious Library UPX OS Processor Check DLL PE File PE64 VirusTotal Malware Checks debugger unpack itself crashed
2 1.6 M 19 ZeroCERT

22800 2022-12-22 23:08 Metals-distributers-list-2020_...  

33bc5141f729922208bfd7b6e0d55b58


PDF
guest