Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
4156 2021-01-04 19:29 CLzuij6r3l8hw0B.exe  

6e4da3fa7328c529bb8ff1b892b61c38


suspicious privilege Check memory Checks debugger unpack itself ComputerName
1.8 M ZeroCERT

4157 2021-01-04 19:30 ds1.exe  

75ce299ceb045c97ab990e27b0e71f41


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself malicious URLs crashed
8.2 M 28 ZeroCERT

4158 2021-01-04 19:36 ebook.exe  

07f79b595254bd60ccec7561e858de35


Check memory Checks debugger unpack itself AppData folder AntiVM_Disk VM Disk Size Check
2.2 ZeroCERT

4159 2021-01-04 19:42 fa.exe  

5188c198e093757a394d4bcb495f325d


VirusTotal Malware AutoRuns Check memory RWX flags setting unpack itself malicious URLs AntiVM_Disk anti-virtualization VM Disk Size Check Windows
4.6 M 55 ZeroCERT

4160 2021-01-04 19:46 file.exe  

2707a1146af033468369f6ea6b322282


VirusTotal Malware unpack itself Remote Code Execution
2.6 M 26 ZeroCERT

4161 2021-01-04 19:49 KingNote-72.exe  

f188bbfe0aceab2a154e735978f48019


VirusTotal Malware AutoRuns Malicious Traffic Check memory Checks debugger Creates shortcut Creates executable files unpack itself Windows utilities suspicious process malicious URLs sandbox evasion WriteConsoleW installed browsers check Windows Browser ComputerName Remote Code Execution DNS
6 9 2 10.0 M 35 ZeroCERT

4162 2021-01-04 20:05 miu111.exe  

b377350471f435c9260876a28980aa45


VirusTotal Malware AutoRuns Code Injection Windows utilities suspicious process AppData folder malicious URLs suspicious TLD WriteConsoleW Windows ComputerName DNS keylogger
1 2 2 9.8 M 41 ZeroCERT

4163 2021-01-04 20:08 munafa_slip.exe  

50ee8d6a24c1e29d184ecec1eb205ecf


VirusTotal Malware AutoRuns Check memory Checks debugger WMI Creates shortcut Creates executable files unpack itself Windows utilities suspicious process AppData folder AntiVM_Disk sandbox evasion WriteConsoleW VM Disk Size Check human activity check Windows ComputerName
2 8.8 34 ZeroCERT

4164 2021-01-04 21:12 oghkdfgh.exe  

593eea90e533ed14757d62b4f2c7d969


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger unpack itself malicious URLs DNS
6.4 M 27 ZeroCERT

4165 2021-01-04 21:14 rc.exe  

54a4be7037ecdb031563998906a365cd


Emotet VirusTotal Malware Buffer PE AutoRuns Code Injection Malicious Traffic buffers extracted Creates executable files RWX flags setting unpack itself Windows utilities AppData folder malicious URLs Tofsee Interception Windows
7 1 13.2 M 23 ZeroCERT

4166 2021-01-04 21:16 oghkdfgh.exe  

593eea90e533ed14757d62b4f2c7d969


Browser Info Stealer VirusTotal Malware Code Injection Check memory Checks debugger buffers extracted ICMP traffic unpack itself malicious URLs Browser DNS crashed
1 9.8 M 27 ZeroCERT

4167 2021-01-04 21:25 scriptxls_ffb47d90-e51d-4e42-9...  

6f20093b3de537822c3a7726b0430c72


VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself powershell.exe wrote suspicious process malicious URLs WriteConsoleW Windows ComputerName Cryptographic key
4.6 M 12 ZeroCERT

4168 2021-01-04 21:26 Server.exe  

ca31a02b5f399516dc35a16e46aa1244


VirusTotal Malware RWX flags setting DNS
1 3.4 M 48 ZeroCERT

4169 2021-01-04 21:36 system.exe  

455a11610acde7fee4d30d962f9900af


VirusTotal Malware RWX flags setting malicious URLs DNS
1 4.2 M 49 ZeroCERT

4170 2021-01-04 21:50 https://lowyersolus.nl/jaxxlib...  

cbc3de44ccf3f2de407a48cd596eb000


Dridex Malware Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
2 3 4.2 ZeroCERT