Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
3616 2020-12-08 09:45 euremen.exe  

b076d449c2fa8d8f1d8b8b07254df976


Browser Info Stealer FTP Client Info Stealer VirusTotal Malware Cryptocurrency wallets Cryptocurrency suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI unpack itself Collect installed applications Check virtual network interfaces malicious URLs suspicious TLD IP Check installed browsers check Tofsee Ransomware Windows Browser ComputerName DNS Cryptographic key Software crashed
4 11 2 15.6 32 ZeroCERT

3617 2020-12-08 10:02 EGO.exe  

f084742f15cd553f5628cfd035c5ca7c


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself malicious URLs Windows ComputerName crashed
9.8 M 36 ZeroCERT

3618 2020-12-08 10:04 king.exe  

0a8cd09f51156849bae020af7a7d09ea


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger unpack itself Windows utilities Checks Bios Detects VirtualBox suspicious process malicious URLs WriteConsoleW VMware anti-virtualization Windows ComputerName DNS Cryptographic key Software
11.8 M 27 ZeroCERT

3619 2020-12-08 11:03 vbc.exe  

9971aba6d9eca7e79d711b0b59e1edef


Browser Info Stealer LokiBot Malware download FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware c&c suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself malicious URLs installed browsers check Windows Browser Email ComputerName Software
2 7 13.8 M 23 ZeroCERT

3620 2020-12-08 11:03 vbc2.exe  

411c1d448a08bc32258d2f8c301037f1


Malware download Azorult Malware MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities suspicious process AppData folder malicious URLs WriteConsoleW Windows ComputerName DNS
1 2 1 12.0 ZeroCERT

3621 2020-12-08 12:26 vbc.exe  

9971aba6d9eca7e79d711b0b59e1edef


Browser Info Stealer LokiBot Malware download FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware c&c suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself malicious URLs installed browsers check Windows Browser Email ComputerName Software
1 2 7 1 13.8 M 23 ZeroCERT

3622 2020-12-08 17:35 app.exe  

e49071c84232e085109f1bb63d2d334d


VirusTotal Malware unpack itself malicious URLs
2.4 M 22 ZeroCERT

3623 2020-12-08 17:36 590906.jpg.exe  

5ca4df20d2ec92c297a010650a777d4f

0.6 ZeroCERT

3624 2020-12-08 17:46 Cerberus.exe  

16e586d7d93daec3cae5cd79dddb627a


VirusTotal Malware MachineGuid Malicious Traffic Check memory Checks debugger Creates executable files unpack itself AppData folder malicious URLs crashed
1 2 5.8 M 47 ZeroCERT

3625 2020-12-08 17:46 document.doc  

2fcf1e23188eeb3d447e0e5b679d4f81


VirusTotal Malware Malicious Traffic exploit crash unpack itself malicious URLs Windows Exploit DNS crashed Downloader
1 6 5.2 M 29 ZeroCERT

3626 2020-12-08 17:53 Host.exe  

ea930dacbcdccf4d29416392cdab6a36


NetWireRC VirusTotal Malware AutoRuns Check memory Checks debugger Creates executable files unpack itself Check virtual network interfaces AppData folder malicious URLs Windows DNS DDNS
2 8.6 M 54 ZeroCERT

3627 2020-12-08 17:54 nass.exe  

5a99e9b25f0423fcedab39af22741b46


VirusTotal Malware Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces suspicious process malicious URLs WriteConsoleW human activity check Tofsee Windows DNS Cryptographic key DDNS crashed
8 4 2 16.0 M 23 ZeroCERT

3628 2020-12-08 21:29 AutoUpdate.exe  

b22aa7e622f8883df8cdcf5b573e043c


VirusTotal Malware Checks debugger unpack itself malicious URLs
4.2 M 26 ZeroCERT

3629 2020-12-08 21:30 oxchjjhrwe.exe  

036adb8395038b566c990ef4006f2cf5


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted ICMP traffic unpack itself malicious URLs Windows
2 12.0 M 45 ZeroCERT

3630 2020-12-08 21:33 n.exe  

4d24c2a76368d1aae55284ccf73a6743


VirusTotal Malware crashed
2.0 M 35 ZeroCERT