Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
4171 2024-05-08 07:52 newexe.exe  

edcd9de4254f050ffa56e723be49c0c5


NSIS Generic Malware Malicious Library UPX Antivirus AntiDebug AntiVM PE64 PE File PowerShell PE32 OS Processor Check VirusTotal Malware powershell Buffer PE AutoRuns PDB suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates shortcut Creates executable files RWX flags setting unpack itself Windows utilities Disables Windows Security Checks Bios Check virtual network interfaces suspicious process AppData folder malicious URLs sandbox evasion WriteConsoleW anti-virtualization Tofsee Windows ComputerName DNS Cryptographic key crashed
7 20 10 2 21.6 M 23 ZeroCERT

4172 2024-05-08 07:50 ngrok.exe  

d028e35142a32bb77301ea582548c71a


Malicious Library Malicious Packer UPX PE64 PE File OS Processor Check VirusTotal Malware crashed
0.8 M 6 ZeroCERT

4173 2024-05-07 17:58 1db61ae18c85d6aca77a4a3800af07...  

1db61ae18c85d6aca77a4a3800af07b4


Generic Malware Malicious Library AntiDebug AntiVM VirusTotal Email Client Info Stealer Malware Code Injection Check memory Checks debugger unpack itself installed browsers check Browser Email
4.0 28 guest

4174 2024-05-07 17:05 libcef.exe  

d3466d3503d830cccdc003917572b7fc


Generic Malware PE File PE32 VirusTotal Malware AutoRuns suspicious privilege RWX flags setting Windows DNS
3 4.4 M 51 r0d

4175 2024-05-07 16:58 winin.exe  

18c7f4960a41689820dae3ed4449b06c


HelloXD Ransomware PE64 PE File VirusTotal Malware
2 1.4 M 51 r0d

4176 2024-05-07 14:47 aioc_5.0.0.63_it.exe  

8159129f7ea53b01c9d930c38052112e


Malicious Library Malicious Packer .NET framework(MSIL) UPX PE File .NET EXE PE32 OS Processor Check VirusTotal Malware suspicious privilege MachineGuid Check memory Checks debugger buffers extracted WMI Creates executable files RWX flags setting unpack itself Windows utilities suspicious process WriteConsoleW Windows ComputerName DNS
1 7.4 M 44 ZeroCERT

4177 2024-05-07 14:44 winin.exe  

18c7f4960a41689820dae3ed4449b06c


PE64 PE File VirusTotal Malware
2 1.4 M 52 ZeroCERT

4178 2024-05-07 14:42 156.exe  

5b8cd5d7476ecc75bf63024abbc61827


Craxs RAT Malicious Library AntiDebug AntiVM PE File .NET EXE PE32 Browser Info Stealer Malware download FTP Client Info Stealer VirusTotal Malware Microsoft PDB suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI unpack itself Collect installed applications Check virtual network interfaces installed browsers check Tofsee Stealer Windows Browser ComputerName Cryptographic key Software crashed
1 4 3 14.4 M 30 ZeroCERT

4179 2024-05-07 14:39 winin-checker.exe  

4149f3a009a0d407a22c36d1ad3c4116


UPX PE64 PE File VirusTotal Malware MachineGuid Check memory Checks debugger unpack itself ComputerName
2.4 M 50 ZeroCERT

4180 2024-05-07 14:37 x3286.exe  

12bbf8529577ef01a7066a9a97a0d81d


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware DNS
1 3.6 M 44 ZeroCERT

4181 2024-05-07 14:37 PCHunter64_new.exe  

a2ed2bf5957b0b2d33eb778a443d15d0


Themida Packer Generic Malware Downloader PE64 PE File VirusTotal Malware Windows Remote Code Execution crashed
3.0 M 34 ZeroCERT

4182 2024-05-07 14:35 PH32.exe  

68f9b52895f4d34e74112f3129b3b00d


Generic Malware Malicious Library Malicious Packer Antivirus UPX PE File PE32 OS Processor Check VirusTotal Malware PDB Check memory Windows Remote Code Execution
5.0 M 31 ZeroCERT

4183 2024-05-07 14:34 Server.exe  

dc32d6eb57bfa87f9f9cb4bf6953ec6e


Generic Malware Malicious Library Malicious Packer UPX PE File PE32 OS Processor Check VirusTotal Malware PDB
1.0 M 26 ZeroCERT

4184 2024-05-07 14:33 %E5%85%81%E8%AE%B8%E6%B3%A8%E9...  

0325c8678db52836c4e9374bb9ada196


Generic Malware Malicious Library Malicious Packer UPX PE File PE32 VirusTotal Malware unpack itself
2.4 M 42 ZeroCERT

4185 2024-05-07 14:32 conus.exe  

9285971685da864f0a33a8cfa94e3764


EnigmaProtector Malicious Packer PE File PE32 ZIP Format Browser Info Stealer Malware download FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware Cryptocurrency wallets Cryptocurrency AutoRuns MachineGuid Check memory buffers extracted unpack itself Windows utilities Collect installed applications suspicious process AntiVM_Disk WriteConsoleW anti-virtualization IP Check VM Disk Size Check installed browsers check Tofsee Ransomware Windows Browser RisePro Email ComputerName DNS Software crashed
1 6 8 12.2 M 36 ZeroCERT