Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
49021 2024-10-20 09:28 smtp.pdf.exe  

bc20ccdfe58debf965054d868fa95085


Gen1 Generic Malware Malicious Library UPX PE File PE32 MZP Format OS Processor Check DLL PE64 VirusTotal Malware Check memory Checks debugger Creates executable files unpack itself AppData folder AntiVM_Disk VM Disk Size Check
3.0 2 ZeroCERT

49022 2024-10-20 09:28 6591.msi  

7d1b4fded657252e8f53e24378463b0f


MSOffice File suspicious privilege Check memory Checks debugger unpack itself AntiVM_Disk VM Disk Size Check ComputerName DNS
1 3.4 M ZeroCERT

49023 2024-10-20 09:30 WindowsUpdate.exe  

ed0c790ffc9b1ca55966ee359ca31eb8


Malicious Packer UPX PE File PE32 VirusTotal Malware unpack itself
3.0 M 66 ZeroCERT

49024 2024-10-20 09:30 Renci.SshNet.dll  

2af177eb2897d2b4b7aaa29bf9438e9c


Antivirus UPX PE File DLL PE64 OS Processor Check VirusTotal Malware PDB
1.8 M 42 ZeroCERT

49025 2024-10-20 09:32 onetap.exe  

fadf16a672e4f4af21b0e364a56897c3


Malicious Library Malicious Packer PE File PE32 MZP Format VirusTotal Malware MachineGuid Check memory ComputerName
1 2.2 M 66 ZeroCERT

49026 2024-10-20 09:32 script.exe  

308d9beab0eccfd8f218a89456b9b7d4


PE File .NET EXE PE32 VirusTotal Malware Checks debugger unpack itself
2.0 M 54 ZeroCERT

49027 2024-10-20 09:32 QQ.exe  

b36366f4a27987d6de47887b03f29c68


Generic Malware Malicious Library Malicious Packer UPX Anti_VM PE File PE32 VirusTotal Malware AutoRuns Creates executable files RWX flags setting unpack itself Windows DNS crashed
2 6.6 M 55 ZeroCERT

49028 2024-10-20 09:34 mechant.exe  

712b252bf7758b16ccdb405074f9e2c3


Malicious Packer UPX PE File PE32 VirusTotal Malware unpack itself DNS
1 3.6 M 68 ZeroCERT

49029 2024-10-20 09:34 World%20of%20Tanks.exe  

b3520940042d52305df325050a95d98a


Malicious Packer UPX PE File PE32 VirusTotal Malware unpack itself
3.0 M 66 ZeroCERT

49030 2024-10-20 09:36 mnobizx.doc  

1d02448bc5eb674c43877d2564ef2aa0


MS_RTF_Obfuscation_Objects RTF File doc VirusTotal Malware exploit crash unpack itself Exploit DNS crashed
1 4.4 M 36 ZeroCERT

49031 2024-10-20 09:39 winfo.exe  

36731ee0e883b48fea504491545d2bff


Malicious Library PE File PE32 VirusTotal Malware WriteConsoleW
0.6 M 5 ZeroCERT

49032 2024-10-20 09:39 9qP0xWlHdvhkbFG.exe  

fdf9c968ea207619e7033cd4e945625b


Malicious Library .NET framework(MSIL) UPX PWS SMTP KeyLogger AntiDebug AntiVM PE File .NET EXE PE32 Buffer PE suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces IP Check ComputerName DNS DDNS
1 1 8.4 M ZeroCERT

49033 2024-10-20 09:41 lb.exe  

069e089fa5687caab81cd32e6f931111


Malicious Library Malicious Packer UPX PE File PE32 VirusTotal Malware Check memory Creates executable files Windows utilities WriteConsoleW Windows
3.0 M 34 ZeroCERT

49034 2024-10-20 09:41 meidan.bin  

cba34861991587d459d349d67d96bac9


PE File .NET EXE PE32 VirusTotal Malware Check memory Checks debugger unpack itself Check virtual network interfaces
1 2.4 M 51 ZeroCERT

49035 2024-10-20 09:42 main.exe  

8292296fd66588cd63632b601dc85981


Gen1 Emotet Generic Malware Malicious Library ASPack UPX PE File PE64 OS Processor Check DLL ZIP Format DllRegisterServer dll VirusTotal Malware Check memory Creates executable files Ransomware crashed
3.2 M 50 ZeroCERT