Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
50041 2020-11-26 11:39 ov6a7cu.jpg.exe  

d3b2e2e305010b207712b4faaa9e8436


VirusTotal Malware unpack itself RCE DNS crashed
3.2 M 51 ZeroCERT

50042 2020-11-26 11:38 nhzreport20.exe  

7a74af0feccf3f3a19bb5f33f4aba409


VirusTotal Malware PDB Malicious Traffic Check memory Checks debugger unpack itself Check virtual network interfaces malicious URLs DNS
1 1 4.8 M 41 ZeroCERT

50043 2020-11-26 11:35 GKy0gZW2U5ZFfi3.exe  

7ed3dddb228ebd374d05d0c7b10f5ec8


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities suspicious process AppData folder malicious URLs WriteConsoleW Ransomware Windows Tor ComputerName DNS crashed
15.2 M 50 ZeroCERT

50044 2020-11-26 11:35 fYVOqo8l9OOcKJN.exe  

b38cb5b76f1743869c7e93575f7f8a05


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities suspicious process AppData folder malicious URLs WriteConsoleW Ransomware Windows Tor ComputerName crashed
14.6 M 46 ZeroCERT

50045 2020-11-26 11:26 fO8WPFWzbC3gexr.exe  

5960c5688e1a3a5040265fd608fffab2


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities suspicious process AppData folder malicious URLs WriteConsoleW Windows ComputerName DNS crashed
14.0 M 44 ZeroCERT

50046 2020-11-26 11:25 ErQiBmn8cFITjnV.exe  

393f16e9d2b10145cc148a9a6413fe51


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities suspicious process AppData folder malicious URLs WriteConsoleW Windows ComputerName crashed
12.8 M 45 ZeroCERT

50047 2020-11-26 10:52 fO8WPFWzbC3gexr.exe  

5960c5688e1a3a5040265fd608fffab2


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities suspicious process AppData folder malicious URLs WriteConsoleW Ransomware Windows Tor ComputerName DNS crashed
14.6 M 44 ZeroCERT

50048 2020-11-26 10:51 ErQiBmn8cFITjnV.exe  

393f16e9d2b10145cc148a9a6413fe51


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities suspicious process AppData folder malicious URLs WriteConsoleW Windows ComputerName crashed
12.2 M 45 ZeroCERT

50049 2020-11-26 10:45 ErQiBmn8cFITjnV.exe  

393f16e9d2b10145cc148a9a6413fe51


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities suspicious process AppData folder malicious URLs WriteConsoleW Ransomware Windows Tor ComputerName DNS crashed
14.0 M 45 guest

50050 2020-11-26 10:45 Documents.exe  

38277d6e24f7210e5b8d77a337ae51d1


VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself malicious URLs
1 3 9.0 M 36 guest

50051 2020-11-26 10:31 document.doc  

57672c47c193f3a557553cab8126f356


VirusTotal Malware Malicious Traffic exploit crash unpack itself malicious URLs Windows Exploit DNS crashed
3 5 5.2 M 27 ZeroCERT

50052 2020-11-26 10:24 config2.json.exe  

db50f0059022bc9532961ea296494f03


VirusTotal Malware unpack itself malicious URLs crashed
2.4 M 22 ZeroCERT

50053 2020-11-26 10:17 chrome.exe  

eefab6a739efad4b904ee832f9179985


VirusTotal Malware AutoRuns Code Injection Check memory Creates executable files Windows utilities malicious URLs WriteConsoleW Windows DNS keylogger
2 9.8 M 63 ZeroCERT

50054 2020-11-26 10:16 CFILEE.exe  

018460c9c7fba779d2c0b79c824ad5d4


VirusTotal Malware Code Injection Check memory Checks debugger buffers extracted unpack itself malicious URLs ComputerName
7.8 M 41 ZeroCERT

50055 2020-11-26 10:03 CFILEE.exe  

018460c9c7fba779d2c0b79c824ad5d4


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself malicious URLs ComputerName DNS
9.8 M 41 ZeroCERT