Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
5506 2021-03-01 11:10 mon88.dll  

10dcb25376d06bc580d053b982f2d9a3


Dridex TrickBot VirusTotal Malware Report suspicious privilege Malicious Traffic Checks debugger buffers extracted RWX flags setting unpack itself Check virtual network interfaces malicious URLs Kovter ComputerName Remote Code Execution DNS crashed
4 3 6.4 M 9 ZeroCERT

5507 2021-03-01 11:11 rundll32.exe  

23e8c240288b1d7de6ea7d35e9ef8dc4


VirusTotal Malware unpack itself malicious URLs DNS
3.4 M 55 ZeroCERT

5508 2021-03-01 11:33 updatewin.exe  

9010fa92cc83afe00fab38703e6ffa77


VirusTotal Malware suspicious privilege Malicious Traffic unpack itself malicious URLs suspicious TLD Tofsee DNS
2 2 4.4 M 58 ZeroCERT

5509 2021-03-01 11:33 start.exe  

32f3be8697cbd7c40c05ee83318ae14c


VirusTotal Malware unpack itself malicious URLs Remote Code Execution
3.2 M 57 ZeroCERT

5510 2021-03-01 11:39 updatewin1.exe  

5b4bd24d6240f467bfbc74803c9f15b0


VirusTotal Malware unpack itself malicious URLs Windows Remote Code Execution
4.0 M 65 ZeroCERT

5511 2021-03-01 11:39 updatewin2.exe  

996ba35165bb62473d2a6743a5200d45


VirusTotal Malware unpack itself Windows Remote Code Execution
3.6 M 66 ZeroCERT

5512 2021-03-01 12:10 Payslip.scr  

da46caac984b88d68a8168413bd77e58


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself malicious URLs
7.6 28 ZeroCERT

5513 2021-03-01 12:24 911.exe  

e0f3a337f93e49d7d865be9f2d54d11c


VirusTotal Malware unpack itself DNS
2.8 22 ZeroCERT

5514 2021-03-01 12:24 Payslip.scr  

da46caac984b88d68a8168413bd77e58


FormBook Malware download VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted ICMP traffic unpack itself malicious URLs
10 11 1 9.6 28 ZeroCERT

5515 2021-03-01 12:28 cred.dll  

7f652195693fd2aa4bba82acb97a173f


FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware Malicious Traffic Check memory Checks debugger unpack itself Email DNS Software
1 1 6.2 M 55 ZeroCERT

5516 2021-03-01 12:30 Bsod.exe  

71f7bcdedc1e2660b2ed55390e3b13be


VirusTotal Malware unpack itself malicious URLs
3.0 M 38 ZeroCERT

5517 2021-03-01 12:33 G7VG0Gcuh9jnk0W.exe  

403debe0f6de85a73b3871a7acdae1a4


VirusTotal Malware Check memory Checks debugger unpack itself crashed
2.6 M 50 ZeroCERT

5518 2021-03-01 12:34 Doc1.dotm  

91b39d68a67bb067209faebf8bb25dee


Malware download VirusTotal Malware Code Injection unpack itself Windows DNS
2 1 3 5.6 M 38 ZeroCERT

5519 2021-03-01 12:42 Garb.exe  

684f1c9d81507362ffed11980e72384c


VirusTotal Malware Check memory Creates executable files malicious URLs Ransomware
4.2 M 33 ZeroCERT

5520 2021-03-01 12:44 Garb.jar  

4042fe3afba9090f20c0b489c8a93c3e


VirusTotal Malware Check memory heapspray unpack itself Java DNS
3.2 M 23 ZeroCERT