Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
44311 2020-12-29 16:34 Q76T.dll  

bf6a524f5543cde20b6fb911edb2a467

0.4 guest

44312 2020-12-29 16:33 backupss.exe  

b5694bcb27502718430e41427126deb9


VirusTotal Malware powershell AutoRuns suspicious privilege MachineGuid Code Injection Check memory Checks debugger buffers extracted WMI Creates shortcut Creates executable files unpack itself powershell.exe wrote suspicious process malicious URLs AntiVM_Disk WriteConsoleW VM Disk Size Check Windows ComputerName DNS Cryptographic key
1 14.0 M 35 ZeroCERT

44313 2020-12-29 16:22 Q76T.dll  

bf6a524f5543cde20b6fb911edb2a467


Check memory unpack itself crashed
1.6 guest

44314 2020-12-29 16:18 Q76T.dll  

bf6a524f5543cde20b6fb911edb2a467


Check memory unpack itself crashed
1.6 guest

44315 2020-12-29 16:16 Q76T.dll  

bf6a524f5543cde20b6fb911edb2a467


Check memory unpack itself crashed
1.6 guest

44316 2020-12-29 16:11 backupss.exe  

b5694bcb27502718430e41427126deb9


VirusTotal Malware powershell AutoRuns suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut Creates executable files unpack itself powershell.exe wrote suspicious process malicious URLs AntiVM_Disk WriteConsoleW VM Disk Size Check Windows ComputerName Cryptographic key
12.4 M 35 ZeroCERT

44317 2020-12-29 16:05 Q76T.dll  

bf6a524f5543cde20b6fb911edb2a467


unpack itself crashed
1.4 guest

44318 2020-12-29 16:04 Q76T.dll  

bf6a524f5543cde20b6fb911edb2a467

0.4 guest

44319 2020-12-29 16:03 Q76T.dll  

bf6a524f5543cde20b6fb911edb2a467

0.4 guest

44320 2020-12-29 16:01 Q76T.dll  

bf6a524f5543cde20b6fb911edb2a467

0.4 guest

44321 2020-12-29 15:59 Q76T.dll  

bf6a524f5543cde20b6fb911edb2a467

0.4 guest

44322 2020-12-29 15:50 backupss.exe  

b5694bcb27502718430e41427126deb9


VirusTotal Malware powershell AutoRuns suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut Creates executable files unpack itself powershell.exe wrote suspicious process malicious URLs AntiVM_Disk WriteConsoleW VM Disk Size Check Windows ComputerName Cryptographic key
12.4 M 35 ZeroCERT

44323 2020-12-29 15:48 Gj9giC7OQR.dll  

478876fb3045479a977aec13ec429c7c


VirusTotal Malware
0.8 M 6 ZeroCERT

44324 2020-12-29 15:16 pic.gif  

b7e359f7786b76b7657659e7a6f12a5f


VirusTotal Malware unpack itself
1.6 M 9 guest

44325 2020-12-29 14:53 a.exe  

15957b219a58f8a3379a7fe9eb5dd1b4


Malware download Amadey FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware PDB Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities suspicious process malicious URLs WriteConsoleW Windows Email ComputerName Software
3 2 3 10.8 M 50 ZeroCERT