Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
2536 2025-01-27 16:48 random.exe  

9ce7b5dc80b072328c7bbcdb1c787941


Generic Malware Malicious Library UPX PE File PE32 CAB OS Processor Check ftp VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger WMI Creates executable files Windows utilities suspicious process AppData folder sandbox evasion WriteConsoleW Windows ComputerName
6.4 M 25 ZeroCERT

2537 2025-01-27 16:47 conhost.exe  

c11a82d699a06d9b8ba4296e0c562ae4


Generic Malware Malicious Library .NET framework(MSIL) UPX Antivirus PE File .NET EXE PE32 PE64 VirusTotal Malware powershell AutoRuns PDB suspicious privilege Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files unpack itself Windows utilities powershell.exe wrote Check virtual network interfaces suspicious process WriteConsoleW Windows ComputerName DNS Cryptographic key
2 3 10.6 M 51 ZeroCERT

2538 2025-01-27 16:47 NewGMEX.dll  

c4fbf219042139fee358cdfdbfa231e3


Generic Malware Malicious Library VMProtect PE File DLL PE32 VirusTotal Malware Checks debugger unpack itself sandbox evasion RCE crashed
4.4 M 41 ZeroCERT

2539 2025-01-27 16:46 done.exe  

7f7068270e1a5a9378124e3ad937662f


Antivirus PE File .NET EXE PE32 VirusTotal Malware PDB suspicious privilege Check memory Checks debugger unpack itself WriteConsoleW ComputerName
3.6 M 50 ZeroCERT

2540 2025-01-27 16:45 vapo.exe  

ee14a993b4f9bf8b3f0421f0a44c2057


Antivirus UPX PE File .NET EXE PE32 OS Processor Check Lnk Format GIF Format VirusTotal Malware AutoRuns suspicious privilege MachineGuid Malicious Traffic Check memory Checks debugger Creates shortcut Creates executable files unpack itself Windows utilities Check virtual network interfaces suspicious process AppData folder AntiVM_Disk WriteConsoleW VM Disk Size Check Windows ComputerName
1 2 9.2 M 36 ZeroCERT

2541 2025-01-27 16:44 0duqg4.dll  

825d37e51813b7c4108747bb766d3c68


Generic Malware Downloader Malicious Packer UPX PE File DLL PE64 OS Processor Check PDB
0.2 ZeroCERT

2542 2025-01-27 16:02 Drivespan.dll  

bf5f8d42669c3e8708f85af8c9cc32bd


Malicious Library Admin Tool (Sysinternals etc ...) UPX PE File DLL PE32 MZP Format OS Processor Check VirusTotal Malware Checks debugger unpack itself sandbox evasion Browser
2.8 47 ZeroCERT

2543 2025-01-27 16:00 ApiUpdater.exe  

ebf341ab1088ab009a9f9cf06619e616


Client SW User Data Stealer Backdoor RemcosRAT Browser Login Data Stealer browser info stealer Generic Malware Google Chrome User Data Downloader Malicious Library Malicious Packer UPX Create Service Socket Escalate priviledges PWS Sniff Audio DNS Interne VirusTotal Malware AutoRuns Code Injection Check memory buffers extracted Creates executable files unpack itself Windows utilities Disables Windows Security suspicious process AppData folder WriteConsoleW Windows
2 13.8 M 63 ZeroCERT

2544 2025-01-27 15:59 setup.msi  

0cc2fa779d757287fbc75c72fa82350f


Generic Malware Malicious Library MSOffice File CAB OS Processor Check VirusTotal Malware suspicious privilege Check memory Checks debugger unpack itself AntiVM_Disk VM Disk Size Check ComputerName
1 12 2.6 26 ZeroCERT

2545 2025-01-27 15:58 windows.exe  

caf984985b1edff4578c541d5847ff68


AsyncRAT task schedule Downloader Malicious Packer .NET framework(MSIL) UPX Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM PE File VirusTotal Malware AutoRuns Code Injection Windows utilities suspicious process AppData folder WriteConsoleW Windows ComputerName
4.8 M 59 ZeroCERT

2546 2025-01-26 01:54 qdirstat  

165617595254bdc8b3721f72fe9265e2


AntiDebug AntiVM Email Client Info Stealer Code Injection Check memory Checks debugger unpack itself installed browsers check Browser Email
3.2 guest

2547 2025-01-25 07:31 krankenhous.exe  

5ec6cd34cf91f731311dbffb9b5da3b1


Malicious Packer UPX PE File PE32 VirusTotal Malware Checks debugger unpack itself
2.2 M 65 guest

2548 2025-01-24 20:33 GoogleUpdateComRegisterShell64...  

0fe3644c905d5547b3a855b2dc3db469


Generic Malware Malicious Library UPX PE File PE64 DllRegisterServer dll OS Processor Check PDB
0.4 guest

2549 2025-01-24 14:08 krankenhous.exe  

5ec6cd34cf91f731311dbffb9b5da3b1


Malicious Packer UPX PE File PE32 VirusTotal Malware unpack itself DNS
2 3.6 64 ZeroCERT

2550 2025-01-24 14:08 loclx.exe  

b73b011b3033255fa2d6a723be4f403a


Generic Malware PE File PE64 VirusTotal Malware Check virtual network interfaces
1 2 1.6 54 ZeroCERT