Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
45211 2020-11-17 09:28 LinK13112020.msi  

9f566a164a5c6ae046c24d0e911dc577


VirusTotal Malware suspicious privilege Malicious Traffic Check memory Checks debugger unpack itself malicious URLs AntiVM_Disk VM Disk Size Check ComputerName
1 2 3.8 M 6 ZeroCERT

45212 2020-11-17 09:27 nass.exe  

d9e4ff69934ce995feaa9e54e0d5ad07


suspicious privilege Check memory Checks debugger unpack itself malicious URLs
2.4 M ZeroCERT

45213 2020-11-17 09:19 document.doc  

a19eabf7fb153b7d9481cbd5a2957e5d


VirusTotal Malware Malicious Traffic exploit crash unpack itself malicious URLs Exploit DNS crashed Downloader
1 1 2 5.2 M 27 ZeroCERT

45214 2020-11-17 09:19 e3txkz.pdf.exe  

a19e9a48a5adb409f2eed82694231a7a


VirusTotal Malware PDB unpack itself DNS crashed
2.4 M 12 ZeroCERT

45215 2020-11-17 09:09 document-1559797301.xlsb  

b716cc176fe7a6c664ee428bcda1704e


unpack itself malicious URLs
2.0 ZeroCERT

45216 2020-11-17 09:08 161120.gif.exe  

62796a07ec927fa798d39dbcaa16a967


unpack itself Remote Code Execution
1.4 M ZeroCERT

45217 2020-11-17 09:03 document-1559797301.xlsb  

b716cc176fe7a6c664ee428bcda1704e


unpack itself malicious URLs
1.6 ZeroCERT

45218 2020-11-17 07:30 http://stoplyingme.com/pdf/nas...  

d9e4ff69934ce995feaa9e54e0d5ad07


VirusTotal Malware Code Injection Creates executable files exploit crash unpack itself Windows utilities malicious URLs Windows Exploit DNS crashed
1 3 1 5.6 ZeroCERT

45219 2020-11-17 07:21 http://download.logins.online/...  

9f566a164a5c6ae046c24d0e911dc577


Dridex VirusTotal Malware Code Injection Creates executable files exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
1 3 3 4.6 6 guest

45220 2020-11-16 23:53 arch64.exe  

62993bb7deb866e9d52ac4221d266468


VirusTotal Malware RWX flags setting unpack itself Windows utilities suspicious process malicious URLs Windows ComputerName DNS
2 2 5.8 38 ZeroCERT

45221 2020-11-16 23:51 svchost.exe  

9044b597dc455f00b922491411426ef6


VirusTotal Malware PDB Malicious Traffic RWX flags setting unpack itself malicious URLs ComputerName DNS
2 1 6.2 M 43 ZeroCERT

45222 2020-11-16 23:47 Setup.exe  

142a8356420248e2ccbfa977b576279c


VirusTotal Malware Check memory Checks debugger WMI unpack itself ComputerName
2.8 16 ZeroCERT

45223 2020-11-16 23:43 web ori2.exe  

3b7b6e39851547b367a5f4e398cea7bd


Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware powershell AutoRuns suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut unpack itself Disables Windows Security powershell.exe wrote Check virtual network interfaces suspicious process malicious URLs WriteConsoleW Tofsee Ransomware Windows Browser Tor Email ComputerName DNS Cryptographic key Software crashed keylogger
5 1 19.0 M 12 ZeroCERT

45224 2020-11-16 23:41 BOQ8600.txt.exe  

5f3d7585543a71950085cb925730494e


VirusTotal Malware powershell suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut unpack itself powershell.exe wrote AppData folder malicious URLs WriteConsoleW IP Check Windows ComputerName Cryptographic key
1 2 1 12.2 M 17 ZeroCERT

45225 2020-11-16 23:37 vbc.exe  

ffdeea6205f5911f3e7d7b103308c3e2


Browser Info Stealer LokiBot Malware download FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware c&c suspicious privilege MachineGuid Malicious Traffic Check memory malicious URLs installed browsers check Browser Email ComputerName Trojan DNS Software
1 2 10 1 7.8 M 67 ZeroCERT