Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
43861 2021-01-20 10:40 5555555555.jpg.exe  

b84b493f1cd0bb9e6fda75d791189b9a

0.2 M guest

43862 2021-01-20 10:04 winlog3.exe  

7832be91faea98b4f83d8abc7daa43c6


VirusTotal Malware suspicious privilege Check memory Checks debugger unpack itself malicious URLs
3.8 M 29 guest

43863 2021-01-19 22:15 winlog2.exe  

528c0afa9442eb19e7d109832366432c


VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted ICMP traffic unpack itself malicious URLs ComputerName DNS
24 26 11.0 23 ZeroCERT

43864 2021-01-19 22:14 winlog.exe  

b75247013200d602f98dc3801d2bde2f


VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted ICMP traffic unpack itself malicious URLs
10 13 9.4 M 16 ZeroCERT

43865 2021-01-19 21:19 vbc.exe  

f958e1e18b67ac9edc2668bac133b64a


VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself malicious URLs DNS
2 4 9.2 M 20 ZeroCERT

43866 2021-01-19 21:18 vbc2.exe  

80c7f8dde5eef2dd1866d5af37512bd4


VirusTotal Malware Checks debugger Creates executable files unpack itself Windows utilities suspicious process AppData folder malicious URLs WriteConsoleW Windows ComputerName
7.6 M 26 ZeroCERT

43867 2021-01-19 20:56 u.exe  

185dd5ec503c683da355a50e70f25c68


Dridex Malware Code Injection RWX flags setting exploit crash unpack itself Windows utilities Tofsee Windows Exploit DNS crashed
3 3.8 ZeroCERT

43868 2021-01-19 20:54 SSLLibrary.dll  

c99beb77fb6ab9314865979f3122c1e4


VirusTotal Malware
1.4 M 1 ZeroCERT

43869 2021-01-19 20:40 Rsigned.exe  

ae8ba034c111e338ffc8cced610e23c7


Emotet VirusTotal Malware Buffer PE AutoRuns Code Injection Check memory buffers extracted Creates executable files RWX flags setting unpack itself Windows utilities malicious URLs Tofsee Windows Remote Code Execution DNS DDNS
2 6 2 10.4 M 23 ZeroCERT

43870 2021-01-19 20:40 scr.dll  

767ee463439c4ec6b754a81e2eb358fb


VirusTotal Malware Checks debugger unpack itself DNS
1 3.8 M 33 ZeroCERT

43871 2021-01-19 20:32 IMG_53771.pdf.exe  

86b54654ac95dc27eb76c8dce196d3b8


Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces malicious URLs VMware IP Check Tofsee Windows Browser Email ComputerName DNS Cryptographic key DDNS Software crashed
2 4 4 15.0 M 26 ZeroCERT

43872 2021-01-19 20:30 Protected Client.vbs  

7c2461575cefe582992751922a989015


VirusTotal Malware powershell suspicious privilege Check memory Checks debugger WMI Creates shortcut ICMP traffic unpack itself Check virtual network interfaces suspicious process malicious URLs WriteConsoleW Tofsee Windows ComputerName Cryptographic key
4 1 9.0 6 ZeroCERT

43873 2021-01-19 20:23 doc.exe  

72f92854f536ce2e3b3fc7f158799759


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows utilities suspicious process malicious URLs WriteConsoleW Windows ComputerName DNS
10.0 M 16 ZeroCERT

43874 2021-01-19 20:23 document.doc  

6d238a412f808d2c4c56865d7f4c4d16


VirusTotal Malware Malicious Traffic ICMP traffic exploit crash unpack itself malicious URLs Tofsee Windows Exploit DNS DDNS crashed
2 7 7 6.4 M 24 ZeroCERT

43875 2021-01-19 20:07 dir2.exe  

d4ecd2bd3d00a12dffcf55e006eb7b24


VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself malicious URLs Windows DNS Cryptographic key
17 12 8 9.4 M 18 ZeroCERT