Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
30916 2022-05-20 14:15 ddo1053.exe  

7db32f392535e5ed4e540d5cff319c49


Malicious Library VMProtect PE File PE64 VirusTotal Malware crashed
2.2 39 ZeroCERT

30917 2022-05-20 14:15 rtst1060.exe  

cd7883d5f7212f21fb5481929cba7f1f


Malicious Library VMProtect PE File PE64 VirusTotal Malware crashed
1.8 18 ZeroCERT

30918 2022-05-20 14:14 vbc.exe  

851bfdd07219ce507c79fa16dc106490


UPX Malicious Library PE32 PE File FormBook Malware download VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Creates executable files unpack itself
3 8 1 5.8 42 ZeroCERT

30919 2022-05-20 14:13 z1CD  

700777b9d962cc217a202312cef1a9eb


Malicious Packer Malicious Library DLL PE File PE64 Dridex TrickBot Malware Report AutoRuns Checks debugger unpack itself Auto service suspicious process Kovter Windows ComputerName DNS crashed
8 4 6.6 ZeroCERT

30920 2022-05-20 14:10 93.dll  

4159eef3e9d5b156a67b9d35a3c9bf70


UPX Malicious Library PE32 OS Processor Check DLL PE File VirusTotal Malware Checks debugger unpack itself
1.4 29 ZeroCERT

30921 2022-05-20 14:10 rtst1039.exe  

966722db7d8eaee5b5b8b17dfed90d8f


Malicious Library VMProtect PE File PE64 VirusTotal Malware crashed
2.2 35 ZeroCERT

30922 2022-05-20 14:08 rtst1069.exe  

e384d0ef37d43cf2e7266e8b1a6818e5


Malicious Library VMProtect PE File PE64 VirusTotal Malware crashed
2.2 31 ZeroCERT

30923 2022-05-20 14:08 rtst1057.exe  

0327dfb56630470385af9d7f73d84a78


Malicious Library VMProtect PE File PE64 VirusTotal Malware crashed
2.2 34 ZeroCERT

30924 2022-05-20 14:03 winlogon.exe  

738a9b03dcbc5baddebe69e14fce6a53


Formbook RAT AntiDebug AntiVM PE32 .NET EXE PE File FormBook Malware download VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted ICMP traffic unpack itself Check virtual network interfaces Windows ComputerName DNS Cryptographic key crashed
13 27 3 4 10.6 M 25 ZeroCERT

30925 2022-05-20 13:51 noo.exe  

24ec18a30815496490d2054419b1980b


RAT PE32 .NET EXE PE File VirusTotal Malware Malicious Traffic Check memory Checks debugger unpack itself Check virtual network interfaces ComputerName
1 2 1 3.8 40 ZeroCERT

30926 2022-05-20 13:46 vbc.exe  

8133ee977a0f5e8649fdf16976ff84fc


Loki UPX Malicious Library PE32 PE File Browser Info Stealer LokiBot Malware download FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware c&c suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Creates executable files unpack itself installed browsers check Browser Email ComputerName DNS Software
1 2 9 1 9.6 M 41 ZeroCERT

30927 2022-05-20 13:44 Polution_v0.7b_windows_64.exe  

1dcaed15ea8d428bf34e413f686ba904


PE File PE64 Browser Info Stealer VirusTotal Malware Checks debugger WMI Windows utilities suspicious process WriteConsoleW Windows Browser ComputerName
5.2 51 ZeroCERT

30928 2022-05-20 13:41 vbc.exe  

d85f82b6c267725dbef70ba110f5b972


Loki UPX Malicious Library PE32 PE File Browser Info Stealer LokiBot Malware download FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware c&c suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Creates executable files unpack itself installed browsers check Browser Email ComputerName DNS Software
1 2 10 1 9.6 M 42 ZeroCERT

30929 2022-05-20 13:40 vbc.exe  

3445422a39889348ab630c8b5b911f5a


Formbook Generic Malware Antivirus AntiDebug AntiVM PE32 .NET EXE PE File FormBook Malware download VirusTotal Malware powershell PDB suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut ICMP traffic unpack itself Windows utilities powershell.exe wrote suspicious process WriteConsoleW Windows ComputerName Cryptographic key
8 16 2 7 13.4 M 20 ZeroCERT

30930 2022-05-20 13:40 vbc.exe  

f3ef43446e2e9b54be156d5ae18d1214


RAT AntiDebug AntiVM PE32 .NET EXE PE File FormBook Malware download VirusTotal Malware PDB suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Windows Cryptographic key
2 4 1 1 8.8 M 40 ZeroCERT