Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
3046 2025-01-30 19:07 LauncherLoader.exe  

7ed622a78bd8afc3c3891379febcf640


Malicious Library Malicious Packer UPX PE File PE32 OS Processor Check VirusTotal Malware PDB Creates executable files unpack itself
6 2 4.8 47 ZeroCERT

3047 2025-01-28 18:39 SOPHIA.json  

ab64a34e3ed4b68ea109db4ac352854a


AntiDebug AntiVM Email Client Info Stealer suspicious privilege Checks debugger Creates shortcut unpack itself installed browsers check Browser Email ComputerName
3.4 guest

3048 2025-01-27 17:12 Client-built.exe  

4f56c5c10fd6d558874a09e5d4dbdffd


Malicious Library .NET framework(MSIL) UPX PE File .NET EXE PE32 OS Processor Check VirusTotal Malware Check memory Checks debugger unpack itself
2.0 M 57 ZeroCERT

3049 2025-01-27 17:09 15.exe  

25399cb8cb5a702bc38b0ccbe13ff100


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware PDB Checks debugger RCE
2.6 M 46 ZeroCERT

3050 2025-01-27 17:07 amada2.exe  

4bd4a99a7cf9e77972857a935d2cddcb


Malicious Library PE File PE32 VirusTotal Malware Creates executable files Windows utilities WriteConsoleW Windows ComputerName
3.2 M 59 ZeroCERT

3051 2025-01-27 17:05 e.exe  

09534368a2ac076690545dd84d2c9a68


Antivirus UPX PE File .NET EXE PE32 OS Processor Check VirusTotal Malware suspicious privilege MachineGuid Check memory Checks debugger unpack itself AntiVM_Disk VM Disk Size Check Windows ComputerName Cryptographic key
4.0 M 53 ZeroCERT

3052 2025-01-27 17:03 1.exe  

e7c964e5bd52da0b4ff1e6543608cf27


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check CAB VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger WMI Creates executable files Windows utilities suspicious process AppData folder sandbox evasion WriteConsoleW Windows ComputerName
6.8 M 48 ZeroCERT

3053 2025-01-27 17:01 abc.exe  

d0f7b322f84f6f8af04ceb66565cabcd


Generic Malware Malicious Library UPX PE File PE64 OS Processor Check VirusTotal Malware PDB ComputerName
2 2.6 M 48 ZeroCERT

3054 2025-01-27 17:01 traf.exe  

77947379b9e26603db5a24e63d9e68fc


Antivirus UPX ScreenShot KeyLogger AntiDebug AntiVM PE File PE32 .NET EXE OS Processor Check Lnk Format GIF Format Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files unpack itself Windows utilities Collect installed applications Check virtual network interfaces suspicious process AppData folder malicious URLs AntiVM_Disk sandbox evasion WriteConsoleW VM Disk Size Check installed browsers check Windows Browser Email ComputerName DNS Software crashed
8 10 20.2 M 60 ZeroCERT

3055 2025-01-27 16:59 Update.exe  

d51807a8c93634b39cce7611535167cf


Malicious Library .NET framework(MSIL) UPX PE File .NET EXE PE32 OS Processor Check VirusTotal Malware Check memory Checks debugger unpack itself ComputerName
2.6 M 52 ZeroCERT

3056 2025-01-27 16:58 tYrnx75.exe  

c3d89e95bfb66f5127ac1f2f3e1bd665


Generic Malware Malicious Library UPX PE File PE32 CAB OS Processor Check VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger WMI Creates executable files Windows utilities suspicious process AppData folder sandbox evasion WriteConsoleW Windows ComputerName
6.6 M 32 ZeroCERT

3057 2025-01-27 16:57 random.exe  

2a64314ecf5802e9e0edb3cd12d25991


Emotet Gen1 Generic Malware Malicious Library UPX Anti_VM PE File PE32 MZP Format DLL OS Processor Check PE64 VirusTotal Malware Checks debugger Creates executable files unpack itself AppData folder ComputerName crashed
3.4 M 38 ZeroCERT

3058 2025-01-27 16:52 ABC.exe  

c23e351a56dec7bd24fb42c187c0c0d1


UPX PE File .NET EXE PE32 VirusTotal Malware suspicious privilege Check memory Checks debugger unpack itself ComputerName
2.6 51 ZeroCERT

3059 2025-01-27 16:51 random.exe  

d6a006790354109731471d85d8fce7e5


Malicious Library ASPack UPX PE File PE32 MZP Format VirusTotal Malware unpack itself RCE
2.4 49 ZeroCERT

3060 2025-01-27 16:50 ugdKEDU.exe  

b4b23395474eed4df3b8113d90fdf3f0


Client SW User Data Stealer LokiBot ftp Client info stealer Malicious Library Socket Http API ScreenShot PWS HTTP DNS Internet API AntiDebug AntiVM PE File .NET EXE PE32 VirusTotal Malware Code Injection Check memory Checks debugger buffers extracted unpack itself malicious URLs crashed
9.2 M 44 ZeroCERT