Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
43816 2021-01-21 14:56 Setup.exe  

4a465ede8d11113aed687052778a9a3d


VirusTotal Malware Buffer PE Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files unpack itself AppData folder malicious URLs VMware IP Check Tofsee Windows ComputerName Amazon DNS
11 12 6 9.0 M 25 ZeroCERT

43817 2021-01-21 14:55 Lskbfte_Sig.exe  

905ccbcdaa81d1df19e534055f56bce6


Check memory unpack itself malicious URLs Remote Code Execution DNS crashed
1 1 2.2 r0d

43818 2021-01-21 14:55 ri.exe  

dfd73442708a7eda9b8e1f9ddab6333b


Browser Info Stealer VirusTotal Email Client Info Stealer Malware AutoRuns suspicious privilege MachineGuid Code Injection Check memory Checks debugger buffers extracted WMI Creates executable files unpack itself Windows utilities suspicious process AppData folder malicious URLs AntiVM_Disk WriteConsoleW VM Disk Size Check installed browsers check Windows Browser Email ComputerName DNS
1 15.4 M 46 ZeroCERT

43819 2021-01-21 14:51 PALLS.exe  

f27fb91f116c7506a124cefb4d0cd0cc


VirusTotal Malware Malicious Traffic Check memory Checks debugger buffers extracted WMI unpack itself Checks Bios Detects VirtualBox Check virtual network interfaces malicious URLs VMware anti-virtualization Windows ComputerName DNS Cryptographic key Software crashed
1 10.4 M 38 ZeroCERT

43820 2021-01-21 14:51 OvtzbDxse.exe  

5ec587d2475a336442be0b9a27e28cad


VirusTotal Malware PDB Check memory malicious URLs
2.4 M 44 ZeroCERT

43821 2021-01-21 14:33 omass.exe  

aaa69c3544561ed70b13847f6ec763e9


VirusTotal Malware Malicious Traffic Check memory Checks debugger buffers extracted WMI unpack itself Checks Bios Detects VirtualBox Check virtual network interfaces malicious URLs VMware anti-virtualization Windows ComputerName DNS Cryptographic key Software crashed
1 10.4 M 39 ZeroCERT

43822 2021-01-21 14:33 musikk.exe  

edeae783c7249315102d03a637fd3257


VirusTotal Malware Malicious Traffic Check memory Checks debugger buffers extracted WMI unpack itself Checks Bios Detects VirtualBox Check virtual network interfaces malicious URLs VMware anti-virtualization Windows ComputerName DNS Cryptographic key Software crashed
1 10.6 M 45 ZeroCERT

43823 2021-01-21 14:28 jojojo.exe  

5bb718a52c52383cea5361519559b683


VirusTotal Malware Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces DNS
1 4.2 M 42 ZeroCERT

43824 2021-01-21 14:28 JrhvgVzef.exe  

6760b2ec2c136e50f4c3870ca69ae638


VirusTotal Malware PDB Check memory malicious URLs
2.4 M 45 ZeroCERT

43825 2021-01-21 10:39 iym.exe  

9d1c8d505aed4eb37bd5530a0b5b3b10


VirusTotal Malware Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces DNS
1 4.2 M 41 ZeroCERT

43826 2021-01-21 10:37 Inlog.exe  

87547b5d46387cc404909ef9fdb163a4


Browser Info Stealer VirusTotal Malware Buffer PE Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files RWX flags setting exploit crash unpack itself Windows utilities Collect installed applications suspicious process AppData folder malicious URLs AntiVM_Disk WriteConsoleW VMware IP Check VM Disk Size Check human activity check installed browsers check Tofsee Ransomware Windows Exploit Browser ComputerName DNS crashed
9 12 5 14.8 M 39 ZeroCERT

43827 2021-01-21 10:35 IrjbvTwxt.exe  

607fafcea994915ecc86d1e1ecbedb20


VirusTotal Malware PDB Check memory malicious URLs DNS
2.8 M 38 ZeroCERT

43828 2021-01-21 10:22 IMG_50781.pdf.exe  

86b473ac3935c031354a80662a66e7c7


Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware AutoRuns suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Windows utilities Check virtual network interfaces suspicious process malicious URLs VMware IP Check Tofsee Windows Browser Email ComputerName DNS Cryptographic key DDNS Software crashed
2 4 4 16.8 M 23 ZeroCERT

43829 2021-01-21 10:22 IMG_501032.pdf.exe  

b2aeb4b06aabde854d9d2ddf06424178


Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware AutoRuns suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files unpack itself Check virtual network interfaces malicious URLs AntiVM_Disk VMware IP Check VM Disk Size Check Tofsee Windows Browser Email ComputerName DNS Cryptographic key DDNS Software crashed
2 4 4 16.4 M 33 ZeroCERT

43830 2021-01-21 10:14 IMG_40317.pdf.exe  

9da79ca571b3427fbd82003b94ee08d2


Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware AutoRuns suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files unpack itself Check virtual network interfaces malicious URLs IP Check Tofsee Windows Browser Email ComputerName DNS Cryptographic key DDNS Software crashed
2 4 4 15.8 M 21 ZeroCERT