Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
46741 2024-08-06 15:09 T.exe  

9cc2a5a252f3593c04906c12a7ac76c0


Client SW User Data Stealer Backdoor RemcosRAT browser info stealer Generic Malware Google Chrome User Data Downloader Malicious Library .NET framework(MSIL) Antivirus Create Service Socket ScreenShot Escalate priviledges PWS Sniff Audio DNS Internet API VirusTotal Malware powershell PDB suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates shortcut ICMP traffic unpack itself Check virtual network interfaces suspicious process Windows ComputerName Cryptographic key
1 4 1 13.6 12 ZeroCERT

46742 2024-08-06 15:12 Meta.jpg.exe  

6ebf7d764e9c709a018c8faf636aa08b


RedLine stealer Malicious Library .NET framework(MSIL) UPX PE File .NET EXE PE32 OS Processor Check DNS
1 1 0.6 ZeroCERT

46743 2024-08-06 15:26 solara.exe  

d61a862be780c78ac1b87594b6b2f155


Malicious Library PE File .NET EXE PE32 VirusTotal Malware GameoverP2P DNS
2 2 2.8 57 ZeroCERT

46744 2024-08-06 17:37 1111MPDW-constraints.vbs  

d75c9dd456d79d5f59cbd1766741273a


Generic Malware Antivirus Hide_URL PowerShell VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Check virtual network interfaces suspicious process WriteConsoleW Tofsee Windows ComputerName Cryptographic key
1 2 1 7.6 3 ZeroCERT

46745 2024-08-06 17:38 nicelookgreatthingsneedherbuty...  

8cf9f47e0c81cd947cd31d27b1174921


Generic Malware Antivirus Hide_URL PowerShell Malware download Malware powershell suspicious privilege Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut unpack itself Check virtual network interfaces suspicious process WriteConsoleW Windows ComputerName DNS Cryptographic key DDNS
1 2 2 8.8 M ZeroCERT

46746 2024-08-06 17:38 wethinkalwaysuneedsuchagoodgir...  

55130daded2878979be89640af795f74


MS_RTF_Obfuscation_Objects RTF File doc Malware download VirusTotal Malware Malicious Traffic RWX flags setting exploit crash Exploit DNS DDNS crashed
2 3 2 5.0 M 34 ZeroCERT

46747 2024-08-06 17:39 urchmannnnnxMPDW-constraints.v...  

68c2ba714945125ad99ee3568f98f1d8


Generic Malware Antivirus Hide_URL PowerShell VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Check virtual network interfaces suspicious process WriteConsoleW Tofsee Windows ComputerName Cryptographic key
1 2 1 7.6 3 ZeroCERT

46748 2024-08-06 17:41 90.hta  

18b180ddf4a0d3df2fa8aa3b1ae06daf


Generic Malware Downloader Antivirus PE File DLL PE32 .NET DLL Malware download VirusTotal Malware powershell suspicious privilege Malicious Traffic Check memory Checks debugger Creates shortcut Creates executable files RWX flags setting unpack itself Windows utilities powershell.exe wrote suspicious process AppData folder WriteConsoleW Windows ComputerName DNS Cryptographic key
1 1 5 11.0 M 18 ZeroCERT

46749 2024-08-06 17:44 sahost.exe  

dfca31273bca0dfaf8902452e3d31d35


AgentTesla Malicious Library .NET framework(MSIL) PWS SMTP KeyLogger AntiDebug AntiVM PE File .NET EXE PE32 Browser Info Stealer Malware download FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware AgentTesla suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces IP Check Tofsee Browser Email ComputerName DNS Software crashed
1 4 5 11.8 M 30 ZeroCERT

46750 2024-08-06 17:46 sirMXU3YH.exe  

9fe4270510b0d9c712de4845ba6a65c8


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check Browser Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Check memory Checks debugger unpack itself Browser Email ComputerName DNS crashed
1 5.2 M 36 ZeroCERT

46751 2024-08-06 17:49 1.exe  

c6eae5603e3b43a51d2d2c449db3f6be


Generic Malware Malicious Library UPX Anti_VM PE File PE32 OS Processor Check PDB Remote Code Execution
0.6 ZeroCERT

46752 2024-08-06 17:57 urchamanbase6444.txt.exe  

6001b9d313616cf68a9d9d6bc7492015


AgentTesla Malicious Library Malicious Packer UPX PE File OS Memory Check .NET EXE PE32 OS Name Check OS Processor Check Browser Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Malicious Traffic Check memory Checks debugger unpack itself Check virtual network interfaces IP Check Browser Email ComputerName DNS crashed
1 2 2 6.0 57 ZeroCERT

46753 2024-08-07 00:27 Video.scr  

ca1fb1ad30189110cc225620dc537368


Gen1 Generic Malware Malicious Library UPX PE File PE32 OS Processor Check DLL .NET DLL VirusTotal Malware AutoRuns suspicious privilege Check memory Creates executable files ICMP traffic unpack itself suspicious process AppData folder anti-virtualization Windows ComputerName DNS
1 3415 6 10.0 61 ZeroCERT

46754 2024-08-07 04:00 duckstation-qt-x64-ReleaseLTCG...  

cf92b90710e5517efc2bd1956c1bd07b


Generic Malware Malicious Library UPX PE File PE64 OS Processor Check PDB
1.0 guest

46755 2024-08-07 09:50 Decrypter.exe  

b03ce4cfe39b75ae65567c7f8632a7d2


PE File .NET EXE PE32 VirusTotal Malware MachineGuid Check memory Checks debugger unpack itself
1.6 11 ZeroCERT