Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
46306 2024-07-26 10:47 crypteda.exe  

04e90b2cf273efb3f6895cfcef1e59ba


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware unpack itself crashed
2.2 M 39 ZeroCERT

46307 2024-07-26 10:48 RP.exe  

3fc6176c962e7a70da7cc35fbdaf3fdc


Generic Malware Malicious Library UPX PE File PE64 OS Processor Check VirusTotal Malware PDB MachineGuid
2.0 M 57 ZeroCERT

46308 2024-07-26 10:49 industries.exe  

b77405e92a8557ab11d1d6ed25d6b390


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check DLL Browser Info Stealer VirusTotal Malware Checks debugger buffers extracted Creates executable files unpack itself AppData folder suspicious TLD Browser DNS
13 21 4 7.0 M 48 ZeroCERT

46309 2024-07-26 10:50 5447jsX.exe  

5dd9c1ffc4a95d8f1636ce53a5d99997


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware unpack itself crashed
2.4 M 46 ZeroCERT

46310 2024-07-26 10:51 25072023.exe  

a9a37926c6d3ab63e00b12760fae1e73


RedLine stealer RedlineStealer Malicious Library .NET framework(MSIL) UPX PE File .NET EXE PE32 OS Processor Check Browser Info Stealer RedLine Malware download FTP Client Info Stealer VirusTotal Malware Microsoft suspicious privilege Check memory Checks debugger buffers extracted WMI unpack itself Collect installed applications installed browsers check Stealer Windows Browser ComputerName DNS Cryptographic key Software crashed
1 6 7.6 M 53 ZeroCERT

46311 2024-07-26 10:52 RoguePotato.exe  

2dd755be5842e71b304d2fbff93eb2a3


Generic Malware Malicious Library Malicious Packer UPX PE File PE64 OS Processor Check VirusTotal Malware DNS
1 2.0 M 55 ZeroCERT

46312 2024-07-26 10:55 svhosts.exe  

fcd623c9b95c16f581efb05c9a87affb


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware unpack itself crashed
2.2 M 39 ZeroCERT

46313 2024-07-26 10:56 pf32.exe  

2a74db17b50025d13a63d947d8a8f828


Antivirus UPX PE File PE32 OS Processor Check VirusTotal Malware
1.2 M 58 ZeroCERT

46314 2024-07-26 10:59 gawdth.exe  

c02798b26bdaf8e27c1c48ef5de4b2c3


SystemBC Generic Malware Downloader Malicious Library UPX Malicious Packer Antivirus Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiV VirusTotal Malware AutoRuns PDB Code Injection Creates executable files unpack itself AppData folder Windows Remote Code Execution
5.0 M 39 ZeroCERT

46315 2024-07-26 11:58 svchost.exe  

2e6d807e953cc0961f1bae27e34bc50d


njRAT backdoor Generic Malware PE File .NET EXE PE32 Malware download njRAT VirusTotal Malware Check memory Checks debugger unpack itself suspicious process WriteConsoleW DNS
1 1 4.0 68 ZeroCERT

46316 2024-07-26 11:59 winiti.exe  

76a4d0d810f2007100c2619d184ef7de


AgentTesla North Korea Generic Malware Malicious Library .NET framework(MSIL) Antivirus PWS SMTP KeyLogger AntiDebug AntiVM PE File .NET EXE PE32 Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware AutoRuns suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut unpack itself Windows utilities Check virtual network interfaces suspicious process WriteConsoleW IP Check Tofsee Windows Browser Email ComputerName DNS Cryptographic key Software crashed
2 4 5 15.6 M 46 ZeroCERT

46317 2024-07-26 12:03 asec.exe  

132609f10f23a5a1fc5653ae7e91bdb2


Generic Malware UPX Antivirus PE File PE32 PowerShell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Windows utilities Disables Windows Security suspicious process WriteConsoleW Windows Update ComputerName DNS Cryptographic key
3 7.8 M ZeroCERT

46318 2024-07-26 12:03 newtpp.exe  

e2e3268f813a0c5128ff8347cbaa58c8


Generic Malware Downloader Malicious Library Admin Tool (Sysinternals etc ...) Malicious Packer UPX Antivirus PE File PE32 PowerShell Malware download Malware AutoRuns suspicious privilege Malicious Traffic Check memory Checks debugger Creates shortcut Creates executable files unpack itself Windows utilities Disables Windows Security suspicious process AppData folder WriteConsoleW IP Check Windows Update Email ComputerName DNS Cryptographic key
8 72 6 7 14.4 M ZeroCERT

46319 2024-07-26 12:04 2020.exe  

95606667ac40795394f910864b1f8cc4


Gen1 Generic Malware Malicious Library UPX Malicious Packer Anti_VM PE File PE64 OS Processor Check DLL ZIP Format Check memory Creates executable files
0.6 M ZeroCERT

46320 2024-07-26 12:04 pered.exe  

faf1270013c6935ae2edaf8e2c2b2c08


Gen1 Generic Malware Malicious Library UPX Malicious Packer Anti_VM PE File PE64 OS Processor Check DLL ZIP Format ftp VirusTotal Malware Check memory Creates executable files DNS
1 2.2 M 9 ZeroCERT