Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
49321 2024-11-08 17:00 Set-up.exe  

3513dcf913ca16de1e626827dd76f329


Themida Anti_VM PE File PE32 VirusTotal Malware Checks debugger unpack itself Checks Bios Detects VMWare Check virtual network interfaces suspicious TLD VMware anti-virtualization Windows DNS crashed
1 1 6.2 27 ZeroCERT

49322 2024-11-08 17:01 Loads.exe  

7bd5e1e14b2496315523848e41ae4622


Vidar UPX PE File PE64 OS Processor Check VirusTotal Malware PDB suspicious privilege Check memory Checks debugger unpack itself
2.6 45 ZeroCERT

49323 2024-11-08 17:01 RuntimeBroker.exe  

b77d847b1d41cde07f81168c7addbb10


Malicious Library .NET framework(MSIL) UPX PE File .NET EXE PE32 OS Processor Check VirusTotal Malware Check memory Checks debugger unpack itself
2.0 57 ZeroCERT

49324 2024-11-08 17:03 loader.exe  

dd4f9e2e3a884356b781bc7085c81fe7


Emotet Gen1 Malicious Library UPX PE File PE64 CAB VirusTotal Malware AutoRuns PDB Checks debugger Creates executable files unpack itself Windows utilities suspicious process Windows ComputerName Remote Code Execution crashed
4.8 50 ZeroCERT

49325 2024-11-08 17:04 Mapper.exe  

9272b18ff6b2b323452d08c674e4243b


Gen1 Generic Malware Malicious Packer UPX PE File PE64 OS Processor Check VirusTotal Malware PDB
1.4 46 ZeroCERT

49326 2024-11-08 17:05 hbfgjhhesfd.exe  

2b3a191ee1f6d3b21d03ee54aa40b604


Generic Malware Malicious Library Malicious Packer .NET framework(MSIL) UPX PE File .NET EXE PE32 VirusTotal Malware WriteConsoleW IP Check ComputerName DNS DoTNet
4 3 3.6 62 ZeroCERT

49327 2024-11-08 17:06 Setup%20Ms%20P-1A.EXE  

a49ec3d87bfccda0f6bbd0370fcb6278


Emotet Gen1 Malicious Library UPX PE File PE64 CAB VirusTotal Malware PDB Checks debugger Remote Code Execution
2.2 43 ZeroCERT

49328 2024-11-08 17:07 1.exe  

8556571319b74d4fd250ca3a40c5c59a


Malicious Library .NET framework(MSIL) UPX PE File .NET EXE PE32 OS Processor Check VirusTotal Malware Check memory Checks debugger unpack itself
2.0 59 ZeroCERT

49329 2024-11-08 17:09 ResOO.exe  

826ac9d03e37048df300b013335098d9


Generic Malware Malicious Library UPX Antivirus PE File PE64 OS Processor Check PowerShell VirusTotal Malware powershell suspicious privilege MachineGuid Check memory Checks debugger Creates shortcut unpack itself powershell.exe wrote suspicious process Windows ComputerName Cryptographic key
4.4 30 ZeroCERT

49330 2024-11-08 17:09 njrtdhadawt.exe  

96e4917ea5d59eca7dd21ad7e7a03d07


Generic Malware Malicious Library Malicious Packer Antivirus UPX AntiDebug AntiVM PE File PE32 OS Processor Check DLL FTP Client Info Stealer VirusTotal Malware MachineGuid Code Injection Check memory WMI Creates executable files unpack itself Windows utilities Collect installed applications suspicious process AppData folder sandbox evasion WriteConsoleW anti-virtualization installed browsers check Windows Browser ComputerName Software
2 9.2 57 ZeroCERT

49331 2024-11-08 17:10 plugin.dll  

c306b71fa8f0842fc860aeac4a63a048


Generic Malware UPX PE File DLL PE32 VirusTotal Malware Buffer PE buffers extracted unpack itself crashed
3.6 28 ZeroCERT

49332 2024-11-08 17:14 jerniuiopu.exe  

d0d7ce7681200387de77c7ab2e2841cd


Generic Malware Malicious Library Malicious Packer .NET framework(MSIL) UPX PE File .NET EXE PE32 VirusTotal Malware WriteConsoleW IP Check ComputerName DNS DoTNet
4 3 3.6 62 ZeroCERT

49333 2024-11-08 17:14 hell9o.exe  

2e933118fecbaf64bbd76514c47a2164


Emotet Gen1 Malicious Library UPX PE File PE64 CAB VirusTotal Malware AutoRuns PDB Creates executable files Windows utilities WriteConsoleW Windows Remote Code Execution
3.6 44 ZeroCERT

49334 2024-11-08 17:14 dxwebsetup.exe  

2cca969570717a0af4f2531eb69cc7c9


Emotet Gen1 Generic Malware PhysicalDrive NSIS NMap Malicious Library UPX Malicious Packer Downloader Admin Tool (Sysinternals etc ...) Antivirus .NET framework(MSIL) ASPack Anti_VM Javascript_Blob PE File CAB PE32 MZP Format OS Processor Check DllRegiste Browser Info Stealer VirusTotal Malware AutoRuns Check memory Creates executable files unpack itself AppData folder AntiVM_Disk VM Disk Size Check installed browsers check Windows Browser
1 4.8 66 ZeroCERT

49335 2024-11-08 17:15 Reaper%20cfx%20Spoofer%20V2.ex...  

9bbac718d4436ff01b90e3b264a3025b


Emotet Gen1 Generic Malware Malicious Library UPX Malicious Packer PE File PE64 CAB .NET EXE PE32 OS Processor Check VirusTotal Malware AutoRuns PDB Creates executable files suspicious process WriteConsoleW Windows ComputerName Remote Code Execution
4.4 55 ZeroCERT