Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
46591 2024-08-04 17:48 todaynatoday.vbs  

75cfe669932a24cf26ac9365e62a1610


Generic Malware Antivirus Hide_URL PowerShell VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Check virtual network interfaces suspicious process WriteConsoleW Tofsee Windows ComputerName Cryptographic key
1 2 1 7.6 M 4 ZeroCERT

46592 2024-08-04 17:55 releaseform.pdf.lnk  

8f1219932acc77e61e012647ce45057f


Generic Malware Antivirus AntiDebug AntiVM Lnk Format GIF Format VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut unpack itself powershell.exe wrote suspicious process WriteConsoleW Windows ComputerName Cryptographic key
4.6 9 ZeroCERT

46593 2024-08-04 17:56 Submit task v3.0.0.4.exe  

1fe2d68fc2915ff7aab045e181dbd25b


Malicious Library UPX PE File PE32 VirusTotal Malware Check memory unpack itself crashed
3.4 47 ZeroCERT

46594 2024-08-04 17:56 Autoupdate.exe  

a63c3cbc7ecff571542f877e0257cae2


Emotet Gen1 HermeticWiper Generic Malware NSIS NMap Malicious Library Antivirus UPX ASPack Malicious Packer Admin Tool (Sysinternals etc ...) Downloader Anti_VM PE File PE32 MZP Format OS Processor Check DllRegisterServer dll HWP ActiveXObject CAB .NET EX VirusTotal Malware AutoRuns suspicious privilege MachineGuid Check memory Checks debugger Creates shortcut Creates executable files unpack itself Check virtual network interfaces AppData folder AntiVM_Disk VM Disk Size Check installed browsers check Windows Browser ComputerName
6.2 M 71 ZeroCERT

46595 2024-08-04 17:56 mereallywantrosethingstobegrea...  

e6e98b552bb784fd185d68f52baed802


Generic Malware Antivirus Hide_URL PowerShell VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Check virtual network interfaces suspicious process WriteConsoleW Tofsee Windows ComputerName Cryptographic key
1 2 1 7.6 M 5 ZeroCERT

46596 2024-08-04 17:57 nativee.jpg.exe  

d4a731a4d6b8b45908fcf6b12fd50e4d


Generic Malware Malicious Library UPX PE File DLL PE32 .NET DLL OS Processor Check VirusTotal Malware PDB
0.6 1 ZeroCERT

46597 2024-08-04 17:58 mycuteflowergirlsheisneedmetoo...  

e0f24c59ceb5803155f7c2cac0043688


Generic Malware Antivirus Hide_URL PowerShell VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Check virtual network interfaces suspicious process WriteConsoleW Tofsee Windows ComputerName Cryptographic key
1 2 1 7.6 M 5 ZeroCERT

46598 2024-08-04 17:59 mycuteflowergirlsheisneedmetoo...  

e0f24c59ceb5803155f7c2cac0043688


Generic Malware Antivirus Hide_URL PowerShell VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Check virtual network interfaces suspicious process WriteConsoleW Tofsee Windows ComputerName Cryptographic key
1 2 1 7.6 M 5 ZeroCERT

46599 2024-08-04 18:01 sostener.vbs  

4251cdf5118a888228fb3b5b2bf6b8e8


Generic Malware Antivirus Hide_URL PowerShell VirusTotal Malware powershell suspicious privilege Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut unpack itself Check virtual network interfaces suspicious process WriteConsoleW Tofsee Windows ComputerName Cryptographic key
1 2 1 10.0 16 ZeroCERT

46600 2024-08-04 18:02 sisterleadpro.exe  

de09178279dc2c6cc007882395325c61


Gen1 Emotet Malicious Library UPX .NET framework(MSIL) PE File PE64 CAB .NET EXE PE32 VirusTotal Malware AutoRuns PDB Check memory Checks debugger Creates executable files unpack itself AppData folder Windows ComputerName Remote Code Execution
5.0 53 ZeroCERT

46601 2024-08-04 18:02 mrsprojectionspro.exe  

75097944c089d35d77e365650435f1e8


Gen1 Emotet Malicious Library UPX Malicious Packer .NET framework(MSIL) PE File PE64 CAB .NET EXE PE32 VirusTotal Malware AutoRuns PDB Check memory Checks debugger Creates executable files unpack itself AppData folder Windows ComputerName Remote Code Execution
5.0 52 ZeroCERT

46602 2024-08-04 18:05 theoryspecializedpro.exe  

680af4923dc7b8ce1c06516ce06d17d3


Gen1 Emotet RedLine stealer Malicious Library UPX .NET framework(MSIL) PE File PE64 CAB .NET EXE PE32 OS Processor Check VirusTotal Malware AutoRuns PDB Check memory Checks debugger Creates executable files unpack itself AppData folder WriteConsoleW Windows ComputerName Remote Code Execution
5.0 54 ZeroCERT

46603 2024-08-05 07:47 r.exe  

acc4944e363d62de63208ce558964af3


Malicious Packer PE File .NET EXE PE32 PDB Check memory Checks debugger unpack itself suspicious process WriteConsoleW ComputerName
1.8 M ZeroCERT

46604 2024-08-05 07:47 abc.exe  

37fa8c1482b10ddd35ecf5ebe8cb570e


Malicious Packer UPX PE File PE32 unpack itself DNS
1 2.8 M ZeroCERT

46605 2024-08-05 07:49 111.exe  

89b20c121c799ab935bca4ce11e94b5b


PE File PE64 Check memory RWX flags setting unpack itself DNS crashed
1 4.0 ZeroCERT