Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
46441 2024-07-31 07:28 UXSNUWNZ.exe  

532d05ffeadbd71ebd3427d829a6759f


Generic Malware Malicious Library UPX Malicious Packer PE File PE32 DLL PE64 OS Processor Check PNG Format Check memory Checks debugger Creates executable files unpack itself AppData folder AntiVM_Disk VM Disk Size Check ComputerName
3.2 ZeroCERT

46442 2024-07-31 07:32 postbox.exe  

c53bb047b93851b66fead144d7c46ff3


Gen1 Generic Malware Malicious Library Malicious Packer UPX DllRegisterServer dll PE File PE64 MSOffice File OS Processor Check
M ZeroCERT

46443 2024-07-31 07:38 sand.exe  

037f916ac94fcc198a7253a0daf62777


Amadey Gen1 RedLine stealer RedlineStealer Generic Malware EnigmaProtector UPX Malicious Library Admin Tool (Sysinternals etc ...) Malicious Packer .NET framework(MSIL) Anti_VM PE File PE32 DLL PE64 OS Processor Check .NET EXE ZIP Format ftp Malware download Amadey Malware AutoRuns Code Injection Malicious Traffic Check memory Checks debugger Creates executable files ICMP traffic unpack itself Checks Bios Detects VMWare AppData folder VMware anti-virtualization Tofsee Windows ComputerName DNS Cryptographic key crashed
8 5 10 6 15.8 M ZeroCERT

46444 2024-07-31 09:12 2.lnk  

2ac86d33add8cc3fc0bacb12d028faff


Generic Malware Antivirus AntiDebug AntiVM Lnk Format GIF Format VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut unpack itself powershell.exe wrote suspicious process WriteConsoleW Windows ComputerName Cryptographic key
1 4.8 16 ZeroCERT

46445 2024-07-31 09:12 3.lnk  

0a68f0e0832154a0a4fbdc304392693f


Generic Malware Antivirus AntiDebug AntiVM Lnk Format GIF Format VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut unpack itself powershell.exe wrote suspicious process WriteConsoleW Windows ComputerName Cryptographic key
1 4.6 8 ZeroCERT

46446 2024-07-31 09:13 4.lnk  

6415eab0ee8401628cbb061942e3dd83


Generic Malware Antivirus AntiDebug AntiVM Lnk Format GIF Format VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger Creates shortcut unpack itself suspicious process WriteConsoleW Windows ComputerName Cryptographic key
1 4.0 8 ZeroCERT

46447 2024-07-31 09:14 5.lnk  

c5f2ade21d5b2cb2eea83d9e3ad64c3f


Generic Malware Antivirus AntiDebug AntiVM Lnk Format GIF Format VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut unpack itself powershell.exe wrote suspicious process WriteConsoleW Windows ComputerName Cryptographic key
1 4.8 11 ZeroCERT

46448 2024-07-31 09:21 7.lnk  

abd62871ee205dc0d58baa78e60d67f6


Generic Malware Antivirus AntiDebug AntiVM Lnk Format GIF Format VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut unpack itself powershell.exe wrote suspicious process WriteConsoleW Windows ComputerName Cryptographic key
1 4.8 16 ZeroCERT

46449 2024-07-31 09:21 8.lnk  

d60ad359db69bf1814acba1a77c4d292


Generic Malware Antivirus AntiDebug AntiVM Lnk Format GIF Format VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut unpack itself powershell.exe wrote suspicious process WriteConsoleW Windows ComputerName Cryptographic key
1 4.6 8 ZeroCERT

46450 2024-07-31 09:21 123123123.lnk  

2a833855401c9710a5aeeea932a4d705


Generic Malware Antivirus AntiDebug AntiVM Lnk Format GIF Format VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut RWX flags setting unpack itself powershell.exe wrote suspicious process Interception Windows ComputerName Cryptographic key
1 1 6.4 25 ZeroCERT

46451 2024-07-31 09:23 corp.lnk  

7eac7583b780de8a2c0e782ca49519c3


Generic Malware Antivirus AntiDebug AntiVM Lnk Format GIF Format VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut unpack itself powershell.exe wrote suspicious process WriteConsoleW Windows ComputerName Cryptographic key
1 4.8 11 ZeroCERT

46452 2024-07-31 09:37 DR_Mod_200_2023.PDF.lnk  

0d6f8a03885e85f384584cb2416f859e


Generic Malware Antivirus AntiDebug AntiVM Lnk Format GIF Format VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut RWX flags setting unpack itself powershell.exe wrote suspicious process Interception Windows ComputerName Cryptographic key
1 1 6.6 35 ZeroCERT

46453 2024-07-31 09:37 Guide.pdf.lnk  

0e5138203d1ba9f34206bdde51374198


Generic Malware AntiDebug AntiVM Lnk Format GIF Format VirusTotal Malware Code Injection Creates shortcut Windows utilities suspicious process WriteConsoleW Windows
1 3.2 22 ZeroCERT

46454 2024-07-31 09:37 myid.lnk  

633759772a1a46e0bfec8caad46f9e6b


Generic Malware Antivirus AntiDebug AntiVM Lnk Format GIF Format VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut RWX flags setting unpack itself powershell.exe wrote suspicious process suspicious TLD Interception Windows ComputerName DNS Cryptographic key
1 2 1 7.8 22 ZeroCERT

46455 2024-07-31 09:39 myteste.pdf.lnk  

e3eddc4e7a18976f35529d739557724c


Generic Malware Antivirus AntiDebug AntiVM Lnk Format GIF Format VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut unpack itself powershell.exe wrote suspicious process WriteConsoleW Windows ComputerName Cryptographic key
1 4.8 17 ZeroCERT