Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
5791 2021-03-09 16:28 VmymIr84VZb2itf.exe  

c0790b6907fbeef1f3772242731069d1


Azorult .NET framework VirusTotal Malware Check memory Checks debugger unpack itself malicious URLs Windows DNS Cryptographic key
3.6 M 24 guest

5792 2021-03-09 16:31 This.exe  

c49dd8107b3624f824efe4f88cb3f792


FindFirstVolume CryptGenKey Process Kill VirusTotal Cryptocurrency Miner Malware Cryptocurrency AutoRuns Check memory Checks debugger unpack itself Windows utilities suspicious process malicious URLs sandbox evasion WriteConsoleW Windows Browser ComputerName DNS
1 9.0 M 52 guest

5793 2021-03-09 16:37 win32.exe  

6f0479fecc84863e671ae73fadb1d91c

VirusTotal Malware PDB unpack itself Windows Remote Code Execution DNS crashed
3.8 M 41 guest

5794 2021-03-09 16:39 winlog.exe  

b70b9db72b2ca57bc40cf423502e25ee

FormBook Malware download VirusTotal Malware suspicious privilege Malicious Traffic Check memory Creates executable files ICMP traffic unpack itself AppData folder malicious URLs sandbox evasion ComputerName
24 26 1 7.0 M 31 guest

5795 2021-03-09 17:01 xloa.exe  

7af8b7bc89ddadfaea70fa5ae5be4ffa


AsyncRAT backdoor Azorult .NET framework VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself malicious URLs Windows Cryptographic key
7.6 14 guest

5796 2021-03-09 17:03 xloa.exe  

7af8b7bc89ddadfaea70fa5ae5be4ffa


AsyncRAT backdoor Azorult .NET framework VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself malicious URLs Windows DNS Cryptographic key
8.2 14 guest

5797 2021-03-09 18:17 bobox.exe  

b180f2a24d5dc06cac7012b78c467d1e


email stealer Download management info stealer Antivirus Google Chrome User Data browser Win Trojan agentTesla AsyncRAT backdoor ftp Client VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut unpack itself Disables Windows Security powershell.exe wrote Check virtual network interfaces suspicious process malicious URLs WriteConsoleW Ransomware Windows Tor ComputerName Cryptographic key crashed
3 2 14.4 11 guest

5798 2021-03-09 18:18 dutchx.exe  

942bb7359a82d93090b8f7dc50863e1f


email stealer Download management info stealer Antivirus Google Chrome User Data browser Win Trojan agentTesla AsyncRAT backdoor ftp Client VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut unpack itself Disables Windows Security powershell.exe wrote Check virtual network interfaces suspicious process malicious URLs WriteConsoleW Ransomware Windows Tor ComputerName DNS Cryptographic key crashed
3 2 15.4 9 guest

5799 2021-03-09 18:30 fushowx.exe  

d0a55dc67d9242c250f810db5064ddbf


Antivirus AsyncRAT backdoor Browser Info Stealer LokiBot Malware download FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware c&c powershell suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut unpack itself Disables Windows Security powershell.exe wrote Check virtual network interfaces suspicious process malicious URLs WriteConsoleW installed browsers check Windows Browser Email ComputerName Cryptographic key Software crashed
3 4 7 2 15.4 M 9 guest

5800 2021-03-09 18:32 kdotx.exe  

0d7a0f2c3d3f21afbdd069cb96031358


email stealer Download management info stealer Antivirus Google Chrome User Data browser Win Trojan agentTesla AsyncRAT backdoor ftp Client Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware powershell suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut unpack itself Disables Windows Security powershell.exe wrote Check virtual network interfaces suspicious process malicious URLs WriteConsoleW Ransomware Windows Browser Tor Email ComputerName DNS Cryptographic key Software crashed keylogger
3 2 3 17.6 M 9 ZeroCERT

5801 2021-03-09 18:34 majicmanx.exe  

db24615ec3585578664b5daf0a9404c4


Antivirus AsyncRAT backdoor VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut unpack itself Disables Windows Security powershell.exe wrote Check virtual network interfaces suspicious process malicious URLs WriteConsoleW Windows ComputerName Cryptographic key crashed
2 2 2 12.6 M 12 ZeroCERT

5802 2021-03-10 09:41 massloga.exe  

f8d6a59b9140fb6af43ae918a7eeb246


AsyncRAT backdoor VirusTotal Malware Check memory Checks debugger unpack itself Check virtual network interfaces malicious URLs DNS
1 3 1 4.6 M 13 guest

5803 2021-03-10 09:43 odinakax.exe  

77a89bdddb7839de0ef5ba315e34a0d9


email stealer Download management info stealer Antivirus Google Chrome User Data browser Win Trojan agentTesla AsyncRAT backdoor ftp Client Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware powershell suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut unpack itself Disables Windows Security powershell.exe wrote Check virtual network interfaces suspicious process malicious URLs WriteConsoleW Ransomware Windows Browser Tor Email ComputerName Cryptographic key Software crashed keylogger
3 2 3 16.8 M 22 guest

5804 2021-03-10 12:19 oneandone.exe  

eedbd28ff032dc43367c03e90ab06c61


AsyncRAT backdoor VirusTotal Malware Check memory Checks debugger unpack itself Check virtual network interfaces
1 2 1 2.2 M 17 guest

5805 2021-03-10 12:21 originfile.exe  

b8125cfe738d72357518509d29049184


Antivirus AsyncRAT backdoor Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware powershell AutoRuns suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut unpack itself Disables Windows Security powershell.exe wrote Check virtual network interfaces suspicious process malicious URLs WriteConsoleW Windows Browser Email ComputerName DNS Cryptographic key Software crashed keylogger
3 2 3 17.4 M 23 guest