Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
3796 2020-12-17 10:05 document.doc  

01c8f989db53ea3a342cc16ede71e06f


VirusTotal Malware Malicious Traffic exploit crash unpack itself malicious URLs Windows Exploit DNS crashed Downloader
1 6 5.2 M 27 ZeroCERT

3797 2020-12-17 15:08 suf.hta  

3bc3c371d30b1a8633a3dbb3069e86ad


VirusTotal Malware crashed
1.0 4 guest

3798 2020-12-17 15:15 suf.hta  

3bc3c371d30b1a8633a3dbb3069e86ad


VirusTotal Malware suspicious privilege Check memory WMI unpack itself Windows utilities suspicious process malicious URLs WriteConsoleW Windows ComputerName
2 5.0 M 4 guest

3799 2020-12-17 15:17 vbc.exe  

ae8d9001b6fc7686c84fb7cd58d95894


VirusTotal Malware Buffer PE Check memory Checks debugger buffers extracted unpack itself DNS
3.4 M 18 ZeroCERT

3800 2020-12-17 16:19 vbn.exe  

74e570ba5f6106f6e93121660da4f462


VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Windows utilities suspicious process malicious URLs WriteConsoleW Windows ComputerName Cryptographic key
1 2 13.2 M 43 ZeroCERT

3801 2020-12-17 17:12 regasm.exe  

8ffafa832e6e9a941c2b87a7c75d6d27


VirusTotal Malware MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities suspicious process AppData folder malicious URLs WriteConsoleW Windows ComputerName DNS crashed
1 3 1 14.0 M 55 ZeroCERT

3802 2020-12-17 17:42 631ec884e194a04ac89ae7db34ee2c...  

631ec884e194a04ac89ae7db34ee2cdc


Vulnerability VirusTotal Malware wscript.exe payload download unpack itself malicious URLs
2 6.8 M 20 r0d

3803 2020-12-17 17:57 http://mute-saga-0240.lovesick...  

7aa5769c35ee7fc6bf69d344890a95f1


Dridex Malware Code Injection Creates executable files exploit crash unpack itself Windows utilities AppData folder malicious URLs Tofsee Windows Exploit DNS crashed
1 2 4 4.6 12 r0d

3804 2020-12-18 08:03 http://54.169.136.76/win/docum...  


Dridex VirusTotal Malware Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
1 3 6.2 guest

3805 2020-12-18 09:26 AQW.exe  

3a6ac6822e16f878b966cac3365e12a0


VirusTotal Malware Buffer PE AutoRuns suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself suspicious process malicious URLs Windows ComputerName Cryptographic key crashed keylogger
2 14.0 M 38 guest

3806 2020-12-18 09:32 EIC.exe  

8ee16e0b7c3b1121b4a2bc974de12a13


Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces malicious URLs IP Check Tofsee Ransomware Windows Browser Tor Email ComputerName Cryptographic key Software crashed keylogger
2 4 1 14.8 M 8 guest

3807 2020-12-18 11:09 bear.jpg.exe  

1d9dcacc61aaacca64e3776e9bb06e94


VirusTotal Malware powershell suspicious privilege Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut unpack itself powershell.exe wrote Check virtual network interfaces suspicious process malicious URLs WriteConsoleW Tofsee Windows ComputerName Cryptographic key
2 2 1 9.8 M 25 ZeroCERT

3808 2020-12-18 11:10 boi.exe  

e339abb742db28e895091e1a4b97a521


VirusTotal Malware Buffer PE suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself malicious URLs Ransomware Windows Tor ComputerName crashed
11.0 9 ZeroCERT

3809 2020-12-18 11:21 boi.exe  

e339abb742db28e895091e1a4b97a521


VirusTotal Malware Buffer PE suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself malicious URLs Windows ComputerName crashed
9.8 9 ZeroCERT

3810 2020-12-18 12:13 Flash_Player_TW_v12.7.6.exe  

68f1a2dc02dd729077427ff09c884eac


VirusTotal Malware unpack itself malicious URLs crashed
4.6 M 44 ZeroCERT