Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
6076 2024-01-27 16:16 lololoolll.exe  

8bb5a33d341fa1694ab9c00258421182


RedLine Infostealer UltraVNC Malicious Library UPX PE32 PE File OS Processor Check VirusTotal Malware PDB Check memory Checks debugger unpack itself Windows Cryptographic key crashed
2.8 M 31 ZeroCERT

6077 2024-01-27 16:12 Gzcueoarue.exe  

721fb763958ddcf207551558ff06b1a0


Hide_EXE .NET framework(MSIL) PWS AntiDebug AntiVM PE File PE64 .NET EXE VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows Cryptographic key
7.8 M 51 ZeroCERT

6078 2024-01-27 16:10 amers.exe  

a2694e00b509f5192ab406b4c4dbd5d4


Amadey RedLine Infostealer RedlineStealer RedLine stealer UltraVNC Generic Malware NSIS UPX Malicious Library Antivirus Admin Tool (Sysinternals etc ...) .NET framework(MSIL) Malicious Packer Anti_VM AntiDebug AntiVM PE32 PE File PNG Format OS Browser Info Stealer RedLine Malware download Amadey FTP Client Info Stealer Email Client Info Stealer Cryptocurrency Miner Malware Cryptocurrency wallets Cryptocurrency Microsoft AutoRuns suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files RWX flags setting exploit crash unpack itself Windows utilities Disables Windows Security Collect installed applications Check virtual network interfaces suspicious process AppData folder AntiVM_Disk sandbox evasion WriteConsoleW anti-virtualization IP Check VM Disk Size Check human activity check installed browsers check Tofsee Ransomware Stealer Windows Update Exploit Browser RisePro Email ComputerName DNS Cryptographic key Software crashed Downloader CoinMiner
24 26 25 11 25.6 M ZeroCERT

6079 2024-01-27 16:09 Cxqdczh.exe  

3ede46cd121b2387c6559c3afae0dc31


Hide_EXE .NET framework(MSIL) PWS AntiDebug AntiVM PE File PE64 .NET EXE VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows DNS Cryptographic key
1 9.0 M 51 ZeroCERT

6080 2024-01-27 16:06 build.exe  

6b1266f334d8f6c9986d1c94275a63fa


Gen1 Generic Malware Malicious Library ASPack Malicious Packer UPX Antivirus Anti_VM PE File PE64 DLL OS Processor Check ftp wget VirusTotal Malware Check memory Creates executable files unpack itself
3.2 M 42 ZeroCERT

6081 2024-01-27 16:06 build.exe  

5b49aff6fd63d3b47a42af95b2ab6233


PE32 PE File .NET EXE VirusTotal Malware PDB Check memory Checks debugger unpack itself DNS
2 3.8 M 28 ZeroCERT

6082 2024-01-27 16:04 d38mibbvz.exe  

e594d99c7fe16646a8799217b44bcabf


Malicious Library PE32 PE File PDB unpack itself Remote Code Execution
1.2 M ZeroCERT

6083 2024-01-27 16:01 986.exe  

6c1dfafc437e8cb6b57dd0729cb39822


PE File PE64 VirusTotal Malware crashed
1.4 M 32 ZeroCERT

6084 2024-01-27 16:00 hotels.exe  

77709112275d51ebd4d9491673c93a62


.NET framework(MSIL) UPX Malicious Library Socket ScreenShot Steal credential DNS Code injection AntiDebug AntiVM PE32 PE File .NET EXE DLL OS Processor Check PNG Format ZIP Format Browser Info Stealer Malware download FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware Cryptocurrency wallets Cryptocurrency Buffer PE AutoRuns PDB MachineGuid Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities Collect installed applications suspicious process AppData folder malicious URLs AntiVM_Disk WriteConsoleW anti-virtualization IP Check VM Disk Size Check installed browsers check Tofsee Ransomware Windows Browser RisePro Email ComputerName Remote Code Execution DNS Cryptographic key Software crashed
1 5 7 19.0 25 ZeroCERT

6085 2024-01-27 15:59 ISIcentos.vbs  

860f242d1a6e895bbd7c2c204c466511

VirusTotal Malware wscript.exe payload download Tofsee
2 2 2 2.6 M 4 ZeroCERT

6086 2024-01-27 15:59 goo8.exe  

f94747901a9f32aa41d1212d6ecc4312


Emotet Gen1 Malicious Library UPX Confuser .NET Malicious Packer VMProtect PE32 PE File MZP Format DLL PE64 OS Processor Check DllRegisterServer dll VirusTotal Malware Checks debugger Creates executable files unpack itself Windows utilities suspicious process AppData folder WriteConsoleW Windows ComputerName crashed
4.6 M 10 ZeroCERT

6087 2024-01-27 15:57 Droper.exe  

6cb9581e342b238db72842250c54ca93


PE32 PE File .NET EXE VirusTotal Malware MachineGuid Check memory Checks debugger unpack itself
2.4 M 37 ZeroCERT

6088 2024-01-27 15:57 RMC.txt.exe  

9567a898f2ecf952f8817787e6ef5701


Browser Login Data Stealer Generic Malware Malicious Library Malicious Packer Downloader UPX PE32 PE File OS Processor Check Remcos VirusTotal Malware Malicious Traffic Check memory
1 4 1 2.4 54 ZeroCERT

6089 2024-01-27 15:55 987.exe  

c71e203acbb9a6de6ff5cbb21d5b0694


PE File PE64 VirusTotal Malware crashed
1.4 M 30 ZeroCERT

6090 2024-01-27 15:55 networa.exe  

6013a3bf4241fe15b4a79978a50ef53c


Malicious Library UPX PE32 PE File OS Processor Check VirusTotal Malware Checks debugger unpack itself
1.2 M 14 ZeroCERT