Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
3106 2024-06-09 09:38 SharpHound.ps1  

310d06e1da8a16b5121ead4874f634fa


Generic Malware Antivirus VirusTotal Malware Check memory unpack itself
1.6 M 35 ZeroCERT

3107 2024-06-09 09:36 svchost.exe  

2de9a9ecf306c424eab7ace09227090f


Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware unpack itself
2.0 M 60 ZeroCERT

3108 2024-06-09 09:36 chat.exe  

4c0deb28ba6ff90d8dcd8113b494442b


Malicious Library PE64 PE File VirusTotal Malware RWX flags setting DNS crashed
1 4.0 M 51 ZeroCERT

3109 2024-06-09 09:34 RunasCs_net2.exe  

92e567d0590f2763960910e4bb85a871


Generic Malware Antivirus PE File .NET EXE PE32 VirusTotal Malware Check memory Checks debugger unpack itself
2.0 46 ZeroCERT

3110 2024-06-09 09:34 nc.exe  

ba1a8e79b0354e180c88350f2fd965fe


PE File PE32 VirusTotal Malware WriteConsoleW
2.4 46 ZeroCERT

3111 2024-06-09 09:32 main.exe  

39b9b77f950a56b61419c2550c0ee2cf


Malicious Library UPX PE File PE32 DLL .NET DLL VirusTotal Malware Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities Check virtual network interfaces AppData folder Windows DNS Cryptographic key
1 1 2 5.4 M 45 ZeroCERT

3112 2024-06-09 09:32 RunasCs.exe  

ed04f33a60faa912c5406158e2d0a800


Generic Malware Antivirus .NET framework(MSIL) PE File .NET EXE PE32 VirusTotal Malware Check memory Checks debugger unpack itself
2.0 45 ZeroCERT

3113 2024-06-09 09:23 Delivery%2006.exe  

132e9cb76def326daa4088f99587b759


Formbook Gen1 Process Kill Generic Malware Suspicious_Script_Bin Malicious Library FindFirstVolume CryptGenKey UPX Malicious Pack FormBook Browser Info Stealer Malware download VirusTotal Malware Checks debugger buffers extracted Creates executable files ICMP traffic unpack itself AppData folder Browser DNS
16 18 3 15 7.8 M 41 ZeroCERT

3114 2024-06-09 09:23 proposal%20report.exe  

092cd26903ed79eb7da016adbb7c928d


Formbook Gen1 Process Kill Generic Malware Suspicious_Script_Bin Malicious Library FindFirstVolume CryptGenKey UPX Malic FormBook Browser Info Stealer Malware download VirusTotal Malware Checks debugger buffers extracted Creates executable files unpack itself AppData folder Browser DNS
18 18 3 16 7.0 M 41 ZeroCERT

3115 2024-06-09 09:22 Delivery%2007.exe  

b94b6c27e410388cd4e7dfeb352b75ce


Formbook Gen1 Process Kill Generic Malware Suspicious_Script_Bin Malicious Library FindFirstVolume Cry FormBook Browser Info Stealer Malware download VirusTotal Malware Checks debugger buffers extracted Creates executable files unpack itself AppData folder Browser DNS
19 20 3 18 7.6 M 40 ZeroCERT

3116 2024-06-09 09:21 DELIVERED%200606.exe  

2eebcdd0e833ba968a9cac360aed72de


Formbook Gen1 Process Kill Generic Malware Suspicious_Script_Bin Malicious Library FindFirstVolume Cry FormBook Browser Info Stealer Malware download VirusTotal Malware Checks debugger buffers extracted Creates executable files unpack itself AppData folder suspicious TLD Browser DNS
20 22 5 18 7.8 M 38 ZeroCERT

3117 2024-06-09 09:21 wow123.hta  

21164aaeeaaa2a4a6e77798aa82d5c7c


Formbook Generic Malware Antivirus Malicious Library PowerShell PE File DLL PE32 FormBook Browser Info Stealer Malware download VirusTotal Malware powershell suspicious privilege Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files RWX flags setting unpack itself powershell.exe wrote Check virtual network interfaces suspicious process AppData folder WriteConsoleW Windows Browser ComputerName DNS Cryptographic key
15 17 6 13 13.4 M 27 ZeroCERT

3118 2024-06-09 09:20 sila.exe  

3e9ba4168fb1c8e4a8a3a69c4968abb3


Malicious Packer PE File PE32 ZIP Format Browser Info Stealer Malware download FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware Cryptocurrency wallets Cryptocurrency AutoRuns MachineGuid Check memory buffers extracted unpack itself Windows utilities Collect installed applications suspicious process AntiVM_Disk sandbox evasion WriteConsoleW anti-virtualization IP Check VM Disk Size Check installed browsers check Tofsee Ransomware Windows Browser RisePro Email ComputerName DNS Software crashed
1 6 9 13.8 M 46 ZeroCERT

3119 2024-06-09 09:15 UNP%20Setup.exe  

a2f39491c9d6e8be4a1bf05ac024fdb4


Generic Malware Malicious Library Malicious Packer Antivirus UPX PE File PE32 CAB OS Processor Check VirusTotal Malware Check memory unpack itself Remote Code Execution
1.6 M 3 ZeroCERT

3120 2024-06-09 05:49 5010_1635873664_4193.exe  

60938dc1c7bc8a2bbab6b7dac4ac06b4


PE File PE32 VirusTotal Malware Check memory Checks debugger ICMP traffic unpack itself Windows DNS Cryptographic key
1 5.0 M 59 guest