Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
5866 2024-02-05 09:38 file.ps1  

cdfc9543cad1e63fc16d366433de83e2


Generic Malware Antivirus VirusTotal Malware Check memory unpack itself WriteConsoleW Windows Cryptographic key
1.6 M 11 guest

5867 2024-02-05 09:38 InstallSetup22.exe  

f99cddefb34c8ce86cb76747cc92a996


Client SW User Data Stealer Gen1 ftp Client info stealer NSIS Generic Malware Malicious Library UPX Antivirus Admin Tool (Sysinternals etc ...) Malicious Packer PWS Anti_VM AntiDebug AntiVM PE32 PE File PNG Format OS Processor Check DLL ZIP Format MZP F Browser Info Stealer Malware download FTP Client Info Stealer Vidar VirusTotal Email Client Info Stealer Malware c&c AutoRuns Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files unpack itself Windows utilities Collect installed applications Check virtual network interfaces suspicious process AppData folder AntiVM_Disk sandbox evasion WriteConsoleW anti-virtualization VM Disk Size Check installed browsers check Ransomware Stealc Stealer Windows Browser Email ComputerName DNS Software plugin
11 3 19 2 21.4 M 42 ZeroCERT

5868 2024-02-05 09:38 mfpf.exe  

946e41fd346edf140acd0d3157711011


Malicious Packer PE32 PE File VirusTotal Malware unpack itself
3.0 61 guest

5869 2024-02-05 09:37 rsb.exe  

5b32fd55fe0d459269f2c09bb286cddf


Generic Malware Malicious Library Malicious Packer UPX PE File PE64 OS Processor Check VirusTotal Malware suspicious privilege Checks debugger WMI Windows utilities Windows ComputerName crashed
2.2 M 7 ZeroCERT

5870 2024-02-05 09:36 Client.exe  

61570c8c0df19c62b674c1e477730a87


Malicious Library Malicious Packer Antivirus .NET framework(MSIL) UPX PE32 PE File .NET EXE OS Processor Check VirusTotal Malware Check memory Checks debugger unpack itself DNS
1 2.6 M 57 ZeroCERT

5871 2024-02-05 09:35 svchost.exe  

6c78730f382399e278d0a2bee8e9df34


PE File PE64 ftp VirusTotal Malware Check memory unpack itself AntiVM_Disk anti-virtualization VM Disk Size Check ComputerName DNS crashed
1 4.2 M 33 ZeroCERT

5872 2024-02-05 09:34 WeChat.exe  

a0bd608ceaeaf94b99f28d79041382f5


UPX PE32 PE File VirusTotal Malware Checks debugger buffers extracted unpack itself Detects VirtualBox Detects VMWare VMware Tofsee Windows Remote Code Execution DNS crashed
3 6 1 9.0 M 49 ZeroCERT

5873 2024-02-05 09:33 360.exe  

22e02c83773863eabce93313b8f00d28


Malicious Library Malicious Packer UPX Anti_VM PE32 PE File VirusTotal Malware Check memory unpack itself AntiVM_Disk sandbox evasion VM Disk Size Check Browser DNS crashed
1 5.0 M 36 ZeroCERT

5874 2024-02-05 09:30 msgbox2.file  

65ea5410c5869dd9aa8511bdbeaab5bd


Malicious Library UPX PE32 PE File OS Processor Check VirusTotal Malware Check memory crashed
1.2 M 22 ZeroCERT

5875 2024-02-05 09:28 clip64.dll  

2afdbe3b99a4736083066a13e4b5d11a


Amadey Malicious Library UPX PE32 PE File DLL OS Processor Check VirusTotal Malware Malicious Traffic Checks debugger unpack itself DNS
1 1 1 3.4 M 35 ZeroCERT

5876 2024-02-05 09:27 fu.exe  

c34697903d0b829f48d0c2b7c3d65978


Malicious Library UPX AntiDebug AntiVM PE32 PE File OS Processor Check MSOffice File icon VirusTotal Malware Code Injection Check memory Checks debugger buffers extracted RWX flags setting exploit crash unpack itself Windows utilities Tofsee Windows Exploit DNS crashed
8 6 1 5.4 25 ZeroCERT

5877 2024-02-05 09:26 crpta.exe  

2060ab69656588e8acefcde9c7cc0a5f


RedLine Infostealer UltraVNC Malicious Library UPX PE32 PE File OS Processor Check VirusTotal Malware PDB Check memory Checks debugger unpack itself Windows Cryptographic key crashed
2.8 M 32 ZeroCERT

5878 2024-02-05 07:58 uqc.exe  

19be3a58e362b68ea242f1e57b7dd22c


PE File PE64 Malware download Cobalt Strike Cobalt Malware unpack itself ComputerName DNS
2 1 2 1.8 M ZeroCERT

5879 2024-02-05 07:56 lux64.exe  

6db34be976cf8a343f7bfb01dfa87d70


Generic Malware Malicious Library Malicious Packer Antivirus UPX Anti_VM PE File PE64 PDB DNS
2 2.4 M ZeroCERT

5880 2024-02-05 07:53 output_64.exe  

b27c86172b5ae181811cc482e218df58


Generic Malware Malicious Library Malicious Packer Antivirus UPX Anti_VM PE File PE64 Malware download NetWireRC Malware GhostRAT PDB Check memory AntiVM_Disk anti-virtualization VM Disk Size Check Browser
2 1 2.2 M ZeroCERT