Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
4186 2024-05-07 14:31 140.exe  

49e1b87b6313367ded55dc2a5acb07b9


Craxs RAT Malicious Library AntiDebug AntiVM PE File .NET EXE PE32 Browser Info Stealer Malware download FTP Client Info Stealer VirusTotal Malware Microsoft PDB suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI unpack itself Collect installed applications Check virtual network interfaces installed browsers check Tofsee Stealer Windows Browser ComputerName Cryptographic key Software crashed
1 4 3 14.4 M 30 ZeroCERT

4187 2024-05-07 14:30 libcef.exe  

d3466d3503d830cccdc003917572b7fc


PE File PE32 VirusTotal Malware AutoRuns suspicious privilege RWX flags setting Windows DNS
2 4.4 M 51 ZeroCERT

4188 2024-05-07 14:28 %E7%A6%81%E6%AD%A2%E6%B3%A8%E9...  

98bfb8f115e827d6bcc579fef55bee42


Generic Malware Malicious Library Malicious Packer UPX PE File PE32 VirusTotal Malware
2.0 M 42 ZeroCERT

4189 2024-05-07 14:28 %E5%85%81%E8%AE%B8%E6%B3%A8%E9...  

b4b622dd6692b0185bd1a284ac849d2f


Generic Malware Malicious Library Malicious Packer UPX PE File PE32 VirusTotal Malware unpack itself
2.2 M 36 ZeroCERT

4190 2024-05-07 14:25 %E7%A6%81%E6%AD%A2%E6%B3%A8%E9...  

514d90addf8cbbf88c05820785888b72


Generic Malware Malicious Library Malicious Packer UPX PE File PE32 VirusTotal Malware Check memory unpack itself
2.6 M 43 ZeroCERT

4191 2024-05-07 14:25 winin-uninstaller.exe  

7ac422a3fd4c8900f40bdc8034da6093


Malicious Packer PE64 PE File Browser Info Stealer VirusTotal Malware suspicious privilege Check memory Checks debugger unpack itself Windows utilities suspicious process WriteConsoleW Windows Browser DNS
1 4.8 M 47 ZeroCERT

4192 2024-05-07 14:23 libcefzs.exe  

87363b124aa12e26c2de50d58aa680ba


AntiDebug AntiVM PE File PE32 VirusTotal Malware AutoRuns suspicious privilege Code Injection Check memory RWX flags setting Windows utilities suspicious process AppData folder Windows DNS
2 7.4 M 52 ZeroCERT

4193 2024-05-07 14:23 PrintSpoofer.dll  

575b5020c27e3d7b14fee8b2b33c44e3


Generic Malware Malicious Library UPX PE64 PE File DLL OS Processor Check VirusTotal Malware Check memory
1.6 M 46 ZeroCERT

4194 2024-05-07 14:21 158.exe  

f700c7059dcb4db8b23e7f31ec135b7b


Generic Malware Malicious Library Downloader Malicious Packer UPX PE File PE32 OS Processor Check VirusTotal Malware Checks debugger DNS
1 3.6 M 56 ZeroCERT

4195 2024-05-07 14:21 PrintSpoofer.exe  

108da75de148145b8f056ec0827f1665


Antivirus UPX PE64 PE File OS Processor Check VirusTotal Malware
1.2 M 54 ZeroCERT

4196 2024-05-07 14:19 142.exe  

1de085c421c1f3421853373b1f3b563b


Craxs RAT Malicious Library AntiDebug AntiVM PE File .NET EXE PE32 Browser Info Stealer Malware download FTP Client Info Stealer VirusTotal Malware Microsoft PDB suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI unpack itself Collect installed applications Check virtual network interfaces installed browsers check Tofsee Stealer Windows Browser ComputerName Cryptographic key Software crashed
1 4 3 14.2 M 21 ZeroCERT

4197 2024-05-07 14:19 angelfederal.exe  

a412943d7658cb194744ffa4008f6944


NSIS Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger WMI Creates executable files unpack itself Windows utilities suspicious process AppData folder sandbox evasion WriteConsoleW Windows ComputerName
6.4 M 29 ZeroCERT

4198 2024-05-07 14:17 73.exe  

6afe84242ad925d898f4be91b39a8fbe


Craxs RAT Malicious Library AntiDebug AntiVM PE File .NET EXE PE32 Browser Info Stealer Malware download FTP Client Info Stealer VirusTotal Malware Microsoft PDB suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI unpack itself Collect installed applications Check virtual network interfaces installed browsers check Tofsee Stealer Windows Browser ComputerName Cryptographic key Software crashed
1 4 3 1 13.6 M 20 ZeroCERT

4199 2024-05-07 14:17 fscan.exe  

8f7dfbec116017d632ca77be578795fd


UPX PE64 PE File VirusTotal Malware crashed
2.2 M 52 ZeroCERT

4200 2024-05-07 14:16 PCHunter64_pps.exe  

8cafdbb0a919a1de8e0e9e38f8aa19bd


Themida Packer Generic Malware Downloader PE64 PE File VirusTotal Malware Windows Remote Code Execution crashed
3.2 M 40 ZeroCERT