Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
43996 2021-01-11 10:13 paymentconfirmation.exe  

eaecc717d59fcef048ff434817317202


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself malicious URLs Ransomware Windows Tor ComputerName crashed
10.8 M 44 ZeroCERT

43997 2021-01-11 10:12 smss.exe  

df850a023c4594ece918855a62d1b842


VirusTotal Malware AutoRuns Code Injection Check memory unpack itself Windows utilities suspicious process AppData folder Windows ComputerName DNS crashed
1 8.2 M 44 ZeroCERT

43998 2021-01-10 17:19 lv.exe  

0869d37b927777b6269f136e04d75c95


VirusTotal Malware AutoRuns Check memory Checks debugger Creates shortcut Creates executable files unpack itself Windows utilities Checks Bios Detects VMWare suspicious process AppData folder malicious URLs AntiVM_Disk WriteConsoleW VMware anti-virtualization IP Check VM Disk Size Check human activity check Windows ComputerName crashed
1 2 1 12.0 M 41 ZeroCERT

43999 2021-01-10 17:17 AQW.exe  

c4b5c5da311f94d1df0ae07b51c03f71


VirusTotal Malware Buffer PE AutoRuns suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates executable files ICMP traffic unpack itself suspicious process malicious URLs WriteConsoleW Windows Cryptographic key keylogger
2 15.2 M 32 ZeroCERT

44000 2021-01-10 17:15 file.exe  

d83cd7278c47f4f3c7884eb9593a256c


VirusTotal Malware unpack itself
2.4 M 25 ZeroCERT

44001 2021-01-09 18:47 hfix.jpg.exe  

d7c8605a63f8f65eca9833f926d69ca1


Browser Info Stealer Malware download VirusTotal Malware Buffer PE AutoRuns PDB Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates executable files unpack itself Windows utilities Check virtual network interfaces AppData folder malicious URLs AntiVM_Disk WriteConsoleW VM Disk Size Check SectopRAT Windows Browser Backdoor ComputerName Remote Code Execution DNS Cryptographic key
1 5 1 14.6 6 ZeroCERT

44002 2021-01-09 17:02 r.dll  

02917a061ab8ffb22011549f55d5c546


VirusTotal Malware PDB suspicious privilege Checks debugger buffers extracted Creates shortcut RWX flags setting unpack itself malicious URLs AntiVM_Disk sandbox evasion VM Disk Size Check installed browsers check Windows Browser Advertising ComputerName DNS Cryptographic key crashed
4 9.4 M 49 guest

44003 2021-01-09 16:33 YQjwQLxHO3BOkm.dll  

bf5f3eb8ea51ae9412b876f76590090d


VirusTotal Malware PDB suspicious privilege Malicious Traffic Checks debugger buffers extracted Creates shortcut RWX flags setting unpack itself malicious URLs AntiVM_Disk sandbox evasion VM Disk Size Check human activity check installed browsers check Windows Browser Advertising ComputerName DNS Cryptographic key crashed
1 3 1 10.4 M 49 guest

44004 2021-01-09 16:12 exe2.exe  

abcf59406ee86bdb65405932d8320323


Malware download Dridex VirusTotal Malware suspicious privilege MachineGuid Check memory buffers extracted WMI Creates shortcut ICMP traffic RWX flags setting unpack itself Windows utilities suspicious process AppData folder malicious URLs AntiVM_Disk WriteConsoleW Ransom Message Firewall state off VM Disk Size Check Tofsee Ransomware GameoverP2P Interception Zeus Windows Tor ComputerName Trojan Banking DNS crashed
2 1095 4 15.4 64 ZeroCERT

44005 2021-01-09 15:16 r.dll  

02917a061ab8ffb22011549f55d5c546


VirusTotal Malware PDB suspicious privilege Checks debugger buffers extracted Creates shortcut ICMP traffic RWX flags setting unpack itself malicious URLs AntiVM_Disk sandbox evasion VM Disk Size Check installed browsers check Windows Browser Advertising ComputerName DNS Cryptographic key crashed keylogger
4 11.4 M 49 ZeroCERT

44006 2021-01-09 10:14 vbc.exe  

51caccb732bdbc34a7fd2b4523c23426


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself malicious URLs Windows ComputerName crashed
10.0 M 27 ZeroCERT

44007 2021-01-09 09:59 FILE_MCCP8GJTDQ7.doc  

f8b8680be2cdd99618c8dd4e99476d0d


Vulnerability VirusTotal Malware Malicious Traffic unpack itself malicious URLs Tofsee
4 11 1 4.6 M 46 ZeroCERT

44008 2021-01-09 09:56 load.jpg.exe  

ca6a4b1b9012eab962aab9f3d8bdfe94


VirusTotal Malware
1.0 M 5 ZeroCERT

44009 2021-01-08 18:38 azcvkjfdg.exe  

4bf8fe02eb7e322bef254486723216be


Browser Info Stealer Emotet Malware download FTP Client Info Stealer Vidar Azorult VirusTotal Email Client Info Stealer Malware Cryptocurrency wallets Cryptocurrency powershell Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates shortcut Creates executable files ICMP traffic RWX flags setting unpack itself Windows utilities Disables Windows Security Collect installed applications powershell.exe wrote Check virtual network interfaces suspicious process AppData folder malicious URLs sandbox evasion WriteConsoleW anti-virtualization installed browsers check Tofsee Ransomware Interception Zeus OskiStealer Stealer Windows Browser Email ComputerName DNS Cryptographic key Software crashed Downloader
10 10 9 1 29.6 M 19 guest

44010 2021-01-08 18:35 11996634181610039829.exe  

cfae6ddf82347d7f7b8b2ec75aeb4307


Malware download NetWireRC VirusTotal Malware Buffer PE suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities Check virtual network interfaces suspicious process AppData folder malicious URLs AntiVM_Disk WriteConsoleW VM Disk Size Check Tofsee Ransomware BitRAT Windows ComputerName DNS DDNS keylogger Password
3 8 4 17.0 14 guest