Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
3676 2020-12-10 23:15 svchost.exe  

cf38f6f8b3eeb914316d54174854dd36


VirusTotal Malware Check memory Checks debugger buffers extracted Creates executable files unpack itself AppData folder DNS crashed
3.8 M 26 guest

3677 2020-12-10 23:21 win.doc  

f0380e5176d3bc9ca533dbe45d171e49


VirusTotal Malware Malicious Traffic exploit crash unpack itself malicious URLs Exploit DNS crashed
1 1 5.2 M 27 ZeroCERT

3678 2020-12-10 23:21 win32.exe  

8d5bd34794ba7ea25340f86a02a541c8


Browser Info Stealer LokiBot Malware download FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware c&c suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself malicious URLs AntiVM_Disk VM Disk Size Check installed browsers check Windows Browser Email ComputerName Trojan DNS Software
2 10 15.0 M 31 ZeroCERT

3679 2020-12-10 23:28 X2.exe  

78b9c1744de7f8ddef1680319bfd354c


Dridex Malware Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
3 4.8 ZeroCERT

3680 2020-12-10 23:29 zonetor.exe  

6bc7aa419dc5a3cbfc520f22a59c2b8b


VirusTotal Malware suspicious privilege Check memory buffers extracted Creates executable files unpack itself Check virtual network interfaces AppData folder malicious URLs IP Check Tofsee Ransomware Interception Windows Tor ComputerName DNS keylogger
1 8 5 13.4 M 52 ZeroCERT

3681 2020-12-11 00:04 autoes.png.exe  

3220540980783a52edf6f4aec58c5d7f


VirusTotal Malware Check memory unpack itself crashed
2.2 M 12 ZeroCERT

3682 2020-12-11 00:04 autospace.png.exe  

f02e738933353cde171d3a10c6e15da9


VirusTotal Malware Check memory unpack itself crashed
2.2 M 15 ZeroCERT

3683 2020-12-11 00:06 AZMap.AutoUpdater.exe  

4b0492e0701916d336bf3ab3a01a4738


VirusTotal Malware suspicious privilege Check memory Checks debugger unpack itself malicious URLs Windows Cryptographic key
3.8 M 26 ZeroCERT

3684 2020-12-11 00:06 azmap.consolewebapp.exe  

c931bb6e8f0dfa11769fd36d5ec37606


VirusTotal Malware suspicious privilege Check memory Checks debugger unpack itself malicious URLs Windows DNS Cryptographic key
4.8 M 42 ZeroCERT

3685 2020-12-11 00:09 azmap.windowsservicewebapp.exe  

8bed49b101c6aad33e50c52cc7d25435


VirusTotal Malware suspicious privilege Check memory Checks debugger unpack itself Windows Cryptographic key
3.2 M 36 ZeroCERT

3686 2020-12-11 00:09 document.doc  

c0b6191c56a2dcba4310fe6de722c259


Dridex VirusTotal Malware exploit crash unpack itself malicious URLs Tofsee Exploit DNS crashed
2 3 4.4 M 26 ZeroCERT

3687 2020-12-11 00:14 googlechrome_3843.exe  

c9aba0e418f93cfbe9bd12bb7757df94


Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities suspicious process AppData folder malicious URLs WriteConsoleW Windows Browser Email ComputerName DNS Cryptographic key Software crashed keylogger
15.0 22 ZeroCERT

3688 2020-12-11 00:15 Inv__7TBII.doc  

88c15179b0afa6bddbd4e445aaed1386


Dridex Vulnerability VirusTotal Malware unpack itself malicious URLs Tofsee Windows
4 5 4.2 M 27 ZeroCERT

3689 2020-12-11 00:18 googlechrome_3843.exe  

c9aba0e418f93cfbe9bd12bb7757df94


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger Creates executable files unpack itself Windows utilities suspicious process AppData folder malicious URLs WriteConsoleW Windows ComputerName
10.0 22 ZeroCERT

3690 2020-12-11 00:20 n7b27878dr.jpg.exe  

c3091f52c9483da0093af4f473053b0b


VirusTotal Malware Check memory heapspray unpack itself Java DNS
3.4 M 7 ZeroCERT