Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
2461 2024-07-06 18:21 inte.exe  

0da0d1efee859f1fe9cbd3bf5b428af6


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware Malicious Traffic DNS
1 1 1 1 2.6 M 58 ZeroCERT

2462 2024-07-06 18:20 mkl.js  

b0d0cfe2e3d3285272c07d5c32c96e44


AgentTesla Malicious Library Malicious Packer UPX PE File OS Memory Check .NET EXE PE32 OS Name Check OS Processor Check Browser Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Check memory Checks debugger Creates executable files unpack itself Check virtual network interfaces AppData folder Tofsee Windows Gmail Browser Email ComputerName crashed keylogger
2 2 9.6 14 ZeroCERT

2463 2024-07-06 18:18 datingloverstartingAgain.vbs  

66decb1e47d3173c8046c1a921244190

VirusTotal Malware DNS
1 1 2.0 7 ZeroCERT

2464 2024-07-06 12:48 startupppp.bat  

f88fe8d8b25b85e6c7f7b31f71771193


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM VirusTotal Malware Windows utilities WriteConsoleW Windows
1.4 2 ZeroCERT

2465 2024-07-06 12:48 e_Scan_Statement0037829.lnk  

db2f7df2e40e5b8901b42d3f56a186fc


Generic Malware Antivirus Lnk Format GIF Format Creates shortcut unpack itself WriteConsoleW
1.0 ZeroCERT

2466 2024-07-06 12:48 ukbvxz01.lnk  

5029bd93186f57a8f5b7978910999604


Generic Malware Antivirus Lnk Format GIF Format Creates shortcut unpack itself WriteConsoleW
1.0 ZeroCERT

2467 2024-07-05 22:38 64.exe  

3e682955546fe3b6b1296a509ff80f65


Malicious Library Malicious Packer UPX PE File .NET EXE PE32 Browser Info Stealer VirusTotal Malware PDB MachineGuid Check memory Checks debugger Creates executable files unpack itself AntiVM_Disk sandbox evasion VM Disk Size Check Browser
4.8 M 48 guest

2468 2024-07-05 22:38 64.exe  

3e682955546fe3b6b1296a509ff80f65


Malicious Library Malicious Packer UPX PE File .NET EXE PE32 Browser Info Stealer VirusTotal Malware PDB MachineGuid Check memory Checks debugger Creates executable files unpack itself AntiVM_Disk sandbox evasion VM Disk Size Check Browser
4.8 M 48 guest

2469 2024-07-05 17:50 РОСКОМНАДЗОР письмо Google Ana...  

adc398c253cff3c1acf9a48e78f5775d


PDF VirusTotal Malware
0.4 1 guest

2470 2024-07-05 15:56 64.exe  

3e682955546fe3b6b1296a509ff80f65


Malicious Library Malicious Packer UPX PE File .NET EXE PE32 Browser Info Stealer VirusTotal Malware PDB MachineGuid Check memory Checks debugger Creates executable files unpack itself AntiVM_Disk sandbox evasion VM Disk Size Check Browser DNS
1 5.4 M 48 ZeroCERT

2471 2024-07-05 15:54 Report.ps1  

054618073752ea5823c98130114a3241


Hide_EXE Generic Malware task schedule Antivirus KeyLogger AntiDebug AntiVM Malware download AsyncRAT NetWireRC VirusTotal Malware Code Injection Check memory buffers extracted unpack itself DDNS
2 3 7.2 10 ZeroCERT

2472 2024-07-05 15:01 Scandoc1114.exe  

1028a0939cb0ce3475e93dcab08ebba8


Process Kill Generic Malware Suspicious_Script_Bin Malicious Library FindFirstVolume CryptGenKey UPX PE File PE32 Device_File_Check OS Processor Check Browser Info Stealer Malware download FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware AgentTesla suspicious privilege Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces IP Check Tofsee Windows Browser Email ComputerName DNS Software crashed keylogger
1 4 5 9.4 M 51 ZeroCERT

2473 2024-07-05 14:57 22per_.php.vbs  

5e93270af81d27f6664145170cf45887


Generic Malware Antivirus Javascript_Blob OS Processor Check Check memory unpack itself WriteConsoleW Windows Cryptographic key
1.0 ZeroCERT

2474 2024-07-05 14:57 22per_.php.vbs  

5e93270af81d27f6664145170cf45887


Generic Malware Antivirus Javascript_Blob OS Processor Check Check memory unpack itself WriteConsoleW Windows Cryptographic key
1.0 ZeroCERT

2475 2024-07-05 14:57 22per.php.vbs  

434ba8778ce364dbcf397f5ca256c6a4


Generic Malware Antivirus Javascript_Blob OS Processor Check Check memory unpack itself WriteConsoleW Windows Cryptographic key
1.0 ZeroCERT