Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
35551 2022-01-18 15:46 invoice.hta  

c56e30a3b967a477d4bc2cf74a3e5a52


unpack itself crashed
0.6 ZeroCERT

35552 2022-01-18 15:36 8888_1642260354_4389.exe  

7b1fb663b7c0fd28682a0ee052cb9827


Generic Malware PE64 PE File VirusTotal Malware
2 1.4 M 35 ZeroCERT

35553 2022-01-18 15:35 EYe3DEfcw7LCaU6T  

f977d2d82e01d8c453495502ef834d98


Malicious Packer Malicious Library UPX PE File OS Processor Check PE32 DLL VirusTotal Malware Checks debugger ICMP traffic RWX flags setting unpack itself sandbox evasion ComputerName DNS
13 6.4 M 10 ZeroCERT

35554 2022-01-18 14:06 Athens.dll  

61295ca80fbecf05b60915d8f6ce8c31


VMProtect Malicious Library PE64 PE File DLL VirusTotal Malware
1.6 11 ZeroCERT

35555 2022-01-18 14:06 Athens.dll  

61295ca80fbecf05b60915d8f6ce8c31


VMProtect Malicious Library PE64 PE File DLL VirusTotal Malware
1.6 11 ZeroCERT

35556 2022-01-18 13:33 Athens.dll  

61295ca80fbecf05b60915d8f6ce8c31


VMProtect Malicious Library PE64 PE File DLL VirusTotal Malware
1.6 11 JYC

35557 2022-01-18 11:01 cc2.html  

8f12c9ff33ea9aa35e97faaeb09f63d7


emotet Generic Malware Antivirus Malicious Packer Malicious Library UPX AntiDebug AntiVM PE File OS Processor Check PE32 DLL VirusTotal Malware powershell AutoRuns suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files ICMP traffic RWX flags setting unpack itself Windows utilities Auto service powershell.exe wrote Check virtual network interfaces suspicious process AntiVM_Disk sandbox evasion WriteConsoleW VM Disk Size Check Windows ComputerName DNS Cryptographic key
1 27 1 16.6 M 6 ZeroCERT

35558 2022-01-18 11:00 cc.html  

136d750819a65ac159a43fc64202cb32


Generic Malware Malicious Packer Malicious Library UPX Antivirus AntiDebug AntiVM PE File OS Processor Check PE32 DLL VirusTotal Malware powershell AutoRuns suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files ICMP traffic RWX flags setting unpack itself Windows utilities Auto service powershell.exe wrote Check virtual network interfaces suspicious process sandbox evasion WriteConsoleW Windows ComputerName DNS Cryptographic key
1 27 16.2 M 6 ZeroCERT

35559 2022-01-18 10:49 543_1642355418_3816.exe  

ffc7e0b51a3320c3f6d1e76163b974bd


Gen1 Gen2 Malicious Library UPX Malicious Packer TEST ASPack ScreenShot Steal credential Http API AntiDebug AntiVM PE File PE32 DLL OS Processor Check JPEG Format GIF Format VirusTotal Email Client Info Stealer Malware Cryptocurrency wallets Cryptocurrency Buffer PE MachineGuid Code Injection Malicious Traffic Check memory buffers extracted Creates shortcut Creates executable files unpack itself Collect installed applications Check virtual network interfaces AppData folder AntiVM_Disk VM Disk Size Check installed browsers check Browser Email ComputerName DNS crashed
4 3 3 14.8 M 17 ZeroCERT

35560 2022-01-18 10:48 Order Sheet.exe  

c7f5e539c0718e15c8de45d5afb5f56b


PWS .NET framework Generic Malware Antivirus DNS AntiDebug AntiVM PE File PE32 .NET EXE VirusTotal Malware Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Check memory Checks debugger buffers extracted Creates shortcut unpack itself Windows utilities suspicious process WriteConsoleW human activity check Windows ComputerName DNS Cryptographic key DDNS
2 14.6 35 ZeroCERT

35561 2022-01-18 10:48 d473b802-eb5f-11e7-8ccc-5944bc...  

c26a2c5f6154225e8d83c4000306f162

VirusTotal Malware
1.0 M 35 ZeroCERT

35562 2022-01-18 10:47 Specification.exe  

1f2c47b057a503a97b115699299ab2bd


Generic Malware Antivirus DNS AntiDebug AntiVM PE File PE32 .NET EXE powershell Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Check memory Checks debugger buffers extracted Creates shortcut unpack itself Windows utilities powershell.exe wrote suspicious process WriteConsoleW human activity check Windows ComputerName DNS Cryptographic key DDNS
2 14.2 ZeroCERT

35563 2022-01-18 10:45 1523_1642354220_8989.exe  

5828affd59476cc9ac97334a09e8ca50


Generic Malware Malicious Library UPX PE File OS Processor Check PE32 PDB unpack itself RCE
1.8 M ZeroCERT

35564 2022-01-18 10:43 Cube_WW14.bmp  

3794abecb036d5e4da931ca90efd707c


Malicious Library UPX PE File OS Processor Check PE32 VirusTotal Malware
1.4 M 31 ZeroCERT

35565 2022-01-18 10:42 new_etc.exe  

d07f491116eceea7ea138e02d19bd996


RAT Generic Malware Malicious Packer UPX Antivirus PE64 PE File VirusTotal Malware AutoRuns suspicious privilege MachineGuid Check memory Checks debugger Creates shortcut Creates executable files unpack itself Windows utilities Check virtual network interfaces suspicious process WriteConsoleW Windows ComputerName Cryptographic key
3 8.6 M 40 ZeroCERT