Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
44146 2024-05-06 16:54 libcef.sfx.exe  

9086dc170ca5e4763e6658db1931e678


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check DLL VirusTotal Malware AutoRuns PDB Creates executable files RWX flags setting Windows Remote Code Execution DNS
1 6.6 M 49 ZeroCERT

44147 2024-05-06 16:56 win.exe  

8a2a16720871904c285e2365f4169602


UPX PE File PE32 VirusTotal Malware AutoRuns Creates executable files Check virtual network interfaces Windows DNS
1 2 1 6.4 M 41 ZeroCERT

44148 2024-05-06 16:56 1.bat  

9c376684de141d140fdb7b3b070daef1


Generic Malware Downloader Antivirus Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM PowerShell VirusTotal Malware powershell suspicious privilege Malicious Traffic Check memory Checks debugger Creates shortcut unpack itself powershell.exe wrote Check virtual network interfaces suspicious process WriteConsoleW Windows ComputerName DNS Cryptographic key
1 1 1 11.0 9 ZeroCERT

44149 2024-05-06 16:58 116.dll  

a76b957e828ae98f7a824a8b613f59a3


Malicious Library UPX PE File DLL PE32 OS Processor Check VirusTotal Malware Check memory unpack itself ComputerName crashed
2.2 M 47 ZeroCERT

44150 2024-05-06 17:00 svcyr.exe  

7edc4b4b6593bd68c65cd155b8755f26


Malicious Library Downloader UPX PE File PE32 OS Processor Check VirusTotal Malware AutoRuns Windows
2 3.4 M 60 ZeroCERT

44151 2024-05-07 08:22 dumb.exe  

479736d5599db235e580d2ff12fe3594


Generic Malware Malicious Library Malicious Packer UPX PE64 PE File OS Processor Check VirusTotal Malware Check memory
1.4 18 guest

44152 2024-05-07 14:13 4.exe  

138bd23787348b10295fda6fd39f59d4


Antivirus UPX PE File .NET EXE PE32 OS Processor Check Lnk Format GIF Format VirusTotal Malware AutoRuns suspicious privilege MachineGuid Check memory Checks debugger Creates shortcut Creates executable files unpack itself AppData folder AntiVM_Disk VM Disk Size Check Windows ComputerName
5.6 M 53 ZeroCERT

44153 2024-05-07 14:13 123.exe  

f47dc2b6eb1db9add1aa892befed2e82


Generic Malware Malicious Library Malicious Packer UPX PE64 PE File OS Processor Check Browser Info Stealer VirusTotal Malware Cryptocurrency wallets Cryptocurrency Check memory unpack itself IP Check Tofsee Ransomware Browser ComputerName DNS
3 4 6.8 M 24 ZeroCERT

44154 2024-05-07 14:15 6055.exe  

b4046c434acdb1caa6b0f9e9743752a9


Generic Malware Malicious Library Malicious Packer Antivirus UPX PE64 PE File OS Processor Check VirusTotal Malware PDB
0.6 2 ZeroCERT

44155 2024-05-07 14:16 PCHunter64_pps.exe  

8cafdbb0a919a1de8e0e9e38f8aa19bd


Themida Packer Generic Malware Downloader PE64 PE File VirusTotal Malware Windows Remote Code Execution crashed
3.2 M 40 ZeroCERT

44156 2024-05-07 14:17 fscan.exe  

8f7dfbec116017d632ca77be578795fd


UPX PE64 PE File VirusTotal Malware crashed
2.2 M 52 ZeroCERT

44157 2024-05-07 14:17 73.exe  

6afe84242ad925d898f4be91b39a8fbe


Craxs RAT Malicious Library AntiDebug AntiVM PE File .NET EXE PE32 Browser Info Stealer Malware download FTP Client Info Stealer VirusTotal Malware Microsoft PDB suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI unpack itself Collect installed applications Check virtual network interfaces installed browsers check Tofsee Stealer Windows Browser ComputerName Cryptographic key Software crashed
1 4 3 1 13.6 M 20 ZeroCERT

44158 2024-05-07 14:19 angelfederal.exe  

a412943d7658cb194744ffa4008f6944


NSIS Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger WMI Creates executable files unpack itself Windows utilities suspicious process AppData folder sandbox evasion WriteConsoleW Windows ComputerName
6.4 M 29 ZeroCERT

44159 2024-05-07 14:19 142.exe  

1de085c421c1f3421853373b1f3b563b


Craxs RAT Malicious Library AntiDebug AntiVM PE File .NET EXE PE32 Browser Info Stealer Malware download FTP Client Info Stealer VirusTotal Malware Microsoft PDB suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI unpack itself Collect installed applications Check virtual network interfaces installed browsers check Tofsee Stealer Windows Browser ComputerName Cryptographic key Software crashed
1 4 3 14.2 M 21 ZeroCERT

44160 2024-05-07 14:21 PrintSpoofer.exe  

108da75de148145b8f056ec0827f1665


Antivirus UPX PE64 PE File OS Processor Check VirusTotal Malware
1.2 M 54 ZeroCERT