Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
48766 2024-10-12 18:49 670937a58778f_LisioFirendes.ex...  

de14925632f91bdb33ca3333a51c20c0


Generic Malware Malicious Library UPX ScreenShot AntiDebug AntiVM PE File PE32 OS Processor Check VirusTotal Malware Code Injection buffers extracted unpack itself Remote Code Execution crashed
7.2 M 42 ZeroCERT

48767 2024-10-12 18:51 eTtB15lCedJYw3r.exe  

3a53cf89d9ecac1bd67359b6cc9e722c


.NET framework(MSIL) PE File .NET EXE PE32 VirusTotal Malware Check memory Checks debugger unpack itself ComputerName
2.2 M 23 ZeroCERT

48768 2024-10-12 18:54 0a839761915d.exe  

ff10eb7cecfd39dc309ed6cdda706f57


Generic Malware Malicious Library UPX ScreenShot AntiDebug AntiVM PE File PE32 OS Processor Check Code Injection buffers extracted unpack itself crashed
5.8 M ZeroCERT

48769 2024-10-12 21:43 CShield.dll  

db5198ea4d04bad9c91dc04ba2033579


Malicious Library PE File DLL PE32 VirusTotal Malware
1.4 M 23 guest

48770 2024-10-13 12:08 setup2.exe  

51edb0928c2e36654e59e2451e2540b6


Malicious Library PE File PE32 unpack itself
1.4 ZeroCERT

48771 2024-10-13 12:10 Bundicut.exe  

c065ba22909fc8dbded4ea0eebb24ad5


Suspicious_Script_Bin Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger WMI Creates executable files Windows utilities suspicious process AppData folder WriteConsoleW Windows ComputerName
6.4 12 ZeroCERT

48772 2024-10-13 12:11 33.exe  

e071b6dd90f4c7a9d23632bfb9517925


Generic Malware UPX PE File PE32 DLL Malware download VirusTotal Malware Malicious Traffic AppData folder suspicious TLD CryptBot DNS
1 2 3 2.8 M 23 ZeroCERT

48773 2024-10-13 12:11 Session-http2.hta  

33425007f0016d3a818d27539ba17a90


PE File VirusTotal Malware Check memory Creates executable files RWX flags setting unpack itself
2.4 38 ZeroCERT

48774 2024-10-13 12:14 taskhostw.exe  

6539c2c942c9aa3ab9c7fe14fccf0b4e


Process Kill Generic Malware Malicious Library FindFirstVolume CryptGenKey UPX PE File Device_File_Check PE32 OS Processor Check VirusTotal Malware AutoRuns Checks debugger Creates executable files unpack itself AppData folder Windows DNS
1 6.6 44 ZeroCERT

48775 2024-10-13 12:16 Session-https.exe  

f05982b55c7a85b9e71a941fe2295848


Malicious Library PE File PE64 VirusTotal Malware RWX flags setting unpack itself ComputerName DNS
1 1 3.6 M 57 ZeroCERT

48776 2024-10-13 12:18 wecreatednewthigsforsuccessful...  

c7b4ec460b896ccd9f368467d06ee44b


MS_RTF_Obfuscation_Objects RTF File doc Malware download VirusTotal Malware Malicious Traffic RWX flags setting exploit crash Windows Exploit DNS crashed
1 1 5 4.6 M 36 ZeroCERT

48777 2024-10-13 17:55 4.exe  

49d7ba824b7249c26927e8a086eb879b


Generic Malware Admin Tool (Sysinternals etc ...) PE File PE32 VirusTotal Malware Check memory RWX flags setting suspicious TLD DNS
1 1 2.2 M 47 ZeroCERT

48778 2024-10-14 09:44 biib.exe  

a0104e86682a3dc4ce82b3099bad96a0


Generic Malware PE File PE64 VirusTotal Cryptocurrency Miner Malware Cryptocurrency DNS CoinMiner
2 2 1.6 M 52 ZeroCERT

48779 2024-10-14 09:44 3.exe  

6f804d98df32ee28685d8468e619dd87


Generic Malware PE File PE64 VirusTotal Cryptocurrency Miner Malware Cryptocurrency DNS CoinMiner
2 2 1.6 M 54 ZeroCERT

48780 2024-10-14 09:46 Release.exe  

6357a0d04d372876788a3d40efa0f1a0


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check PE64 VirusTotal Cryptocurrency Miner Malware Cryptocurrency PDB Creates executable files unpack itself AppData folder Tofsee Remote Code Execution DNS crashed CoinMiner
4 3 3.6 M 47 ZeroCERT