Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
47776 2024-09-03 08:55 x11.exe  

ba856e48421c75592a0b45953c21dd2c


Generic Malware Malicious Library WinRAR UPX Malicious Packer PE File PE32 OS Processor Check PE64 PDB Creates executable files Remote Code Execution
1.4 ZeroCERT

47777 2024-09-03 08:57 gWsmPty.exe  

b7e1019218936fc5967b3b3845981231


Generic Malware Malicious Library PE File PE64 FTP Client Info Stealer Malware Malicious Traffic Check memory buffers extracted unpack itself Tofsee Software
1 2 1 3.2 ZeroCERT

47778 2024-09-03 08:59 m20.exe  

1bc0da4074693f616a71d648d4b8c106


Generic Malware Malicious Library Malicious Packer UPX PE File PE64 OS Processor Check
ZeroCERT

47779 2024-09-03 09:00 byebyefronbypass.exe  

b5128526be8a6b02a0ea3dcb4bef1478


Gen1 Emotet Generic Malware Malicious Library UPX Admin Tool (Sysinternals etc ...) Malicious Packer Antivirus Anti_VM PE File PE64 OS Processor Check DLL PE32 .NET DLL ftp wget DllRegisterServer dll ZIP Format Check memory Creates executable files AppData folder
2.2 M ZeroCERT

47780 2024-09-03 09:04 VIZSPLOIT.exe  

1f29ee3673fc717fcb8f6007c3f840cd


UPX PE File PE64 OS Processor Check VirusTotal Malware PDB
1.0 M 24 ZeroCERT

47781 2024-09-03 09:04 EvolutInjector.exe  

34563cc2fcd4e6e5b0063cbc0ffce9c1


Malicious Packer UPX PE File PE32 OS Processor Check VirusTotal Malware DNS
1 1.8 25 ZeroCERT

47782 2024-09-03 09:06 sWsmPty.exe  

478124644da5f82d2c803238a413cd96


Generic Malware Malicious Library PE File PE64 FTP Client Info Stealer VirusTotal Malware Malicious Traffic Check memory buffers extracted unpack itself Tofsee Software
1 2 1 4.4 M 48 ZeroCERT

47783 2024-09-03 09:08 Youtube-Viewers.exe  

a7878575f2e9f431c354c17a3e768fd9


PE File .NET EXE PE32 VirusTotal Malware PDB Check memory Checks debugger unpack itself WriteConsoleW ComputerName
2.8 M 34 ZeroCERT

47784 2024-09-03 09:08 66d4d06f98874_vweo12.exe  

0d4368e6ac69934c3d6012daecee98ad


Stealc Client SW User Data Stealer LokiBot ftp Client info stealer Antivirus Http API PWS HTTP Code injection Internet API AntiDebug AntiVM PE File .NET EXE PE32 Browser Info Stealer Malware download Vidar VirusTotal Malware c&c PDB MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates executable files unpack itself Collect installed applications malicious URLs sandbox evasion anti-virtualization installed browsers check Stealc Stealer Windows Browser ComputerName DNS plugin
8 1 10 1 14.2 M 28 ZeroCERT

47785 2024-09-03 09:10 CheatEngine75.exe  

609fea742d34dc1d53f0eeb4873b1a0a


Emotet Generic Malware Malicious Library UPX PE File PE32 MZP Format OS Processor Check PNG Format DLL PE64 VirusTotal Malware MachineGuid Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files unpack itself Check virtual network interfaces AppData folder AntiVM_Disk sandbox evasion VMware China VM Disk Size Check Tofsee Browser
3 2 1 8.8 36 ZeroCERT

47786 2024-09-03 09:12 Launcher.exe  

1788ecdad15cd02d42475133faa38cce


UPX PE File PE64 OS Processor Check VirusTotal Malware PDB
1.4 57 ZeroCERT

47787 2024-09-03 09:12 huna.exe  

8424ecf2f95410ceed693e7d1011d26f


PE File PE32 VirusTotal Malware
1.4 M 21 ZeroCERT

47788 2024-09-03 09:12 rome.exe  

f43b5c1b6de35a7fdb2c48ff380bac60


Stealc Gen1 Generic Malware Malicious Library UPX Malicious Packer Anti_VM PE File PE32 DLL OS Processor Check Browser Info Stealer Malware download FTP Client Info Stealer Vidar VirusTotal Email Client Info Stealer Malware c&c Malicious Traffic Check memory Checks debugger Creates executable files unpack itself Checks Bios Collect installed applications Detects VMWare sandbox evasion VMware anti-virtualization installed browsers check Stealc Stealer Windows Browser Email ComputerName DNS Software crashed plugin
9 1 16 2 12.4 M 30 ZeroCERT

47789 2024-09-03 09:13 66d48faf6737f_crypted.exe  

67a51322cbb161374023771f2fa9c1d5


RedLine stealer Antivirus ScreenShot PWS AntiDebug AntiVM PE File .NET EXE PE32 VirusTotal Malware PDB Code Injection Check memory Checks debugger buffers extracted unpack itself Windows DNS Cryptographic key
1 10.2 M 52 ZeroCERT

47790 2024-09-03 09:14 8_Ball_Pool_Cheto.exe  

b5ca92538a485317ce5c4dff6c5fd08f


UPX PE File PE32 OS Processor Check VirusTotal Malware PDB
1.8 M 48 ZeroCERT