Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
6091 2024-09-03 09:08 66d4d06f98874_vweo12.exe  

0d4368e6ac69934c3d6012daecee98ad


Stealc Client SW User Data Stealer LokiBot ftp Client info stealer Antivirus Http API PWS HTTP Code injection Internet API AntiDebug AntiVM PE File .NET EXE PE32 Browser Info Stealer Malware download Vidar VirusTotal Malware c&c PDB MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates executable files unpack itself Collect installed applications malicious URLs sandbox evasion anti-virtualization installed browsers check Stealc Stealer Windows Browser ComputerName DNS plugin
8 1 10 1 14.2 M 28 ZeroCERT

6092 2024-09-03 09:08 Youtube-Viewers.exe  

a7878575f2e9f431c354c17a3e768fd9


PE File .NET EXE PE32 VirusTotal Malware PDB Check memory Checks debugger unpack itself WriteConsoleW ComputerName
2.8 M 34 ZeroCERT

6093 2024-09-03 09:06 sWsmPty.exe  

478124644da5f82d2c803238a413cd96


Generic Malware Malicious Library PE File PE64 FTP Client Info Stealer VirusTotal Malware Malicious Traffic Check memory buffers extracted unpack itself Tofsee Software
1 2 1 4.4 M 48 ZeroCERT

6094 2024-09-03 09:04 EvolutInjector.exe  

34563cc2fcd4e6e5b0063cbc0ffce9c1


Malicious Packer UPX PE File PE32 OS Processor Check VirusTotal Malware DNS
1 1.8 25 ZeroCERT

6095 2024-09-03 09:04 VIZSPLOIT.exe  

1f29ee3673fc717fcb8f6007c3f840cd


UPX PE File PE64 OS Processor Check VirusTotal Malware PDB
1.0 M 24 ZeroCERT

6096 2024-09-03 09:00 byebyefronbypass.exe  

b5128526be8a6b02a0ea3dcb4bef1478


Gen1 Emotet Generic Malware Malicious Library UPX Admin Tool (Sysinternals etc ...) Malicious Packer Antivirus Anti_VM PE File PE64 OS Processor Check DLL PE32 .NET DLL ftp wget DllRegisterServer dll ZIP Format Check memory Creates executable files AppData folder
2.2 M ZeroCERT

6097 2024-09-03 08:59 m20.exe  

1bc0da4074693f616a71d648d4b8c106


Generic Malware Malicious Library Malicious Packer UPX PE File PE64 OS Processor Check
ZeroCERT

6098 2024-09-03 08:57 gWsmPty.exe  

b7e1019218936fc5967b3b3845981231


Generic Malware Malicious Library PE File PE64 FTP Client Info Stealer Malware Malicious Traffic Check memory buffers extracted unpack itself Tofsee Software
1 2 1 3.2 ZeroCERT

6099 2024-09-03 08:55 x11.exe  

ba856e48421c75592a0b45953c21dd2c


Generic Malware Malicious Library WinRAR UPX Malicious Packer PE File PE32 OS Processor Check PE64 PDB Creates executable files RCE
1.4 ZeroCERT

6100 2024-09-03 08:55 smartscreen.exe  

7e1fa0f93773dc8861a92279b7db03c6


Gen1 Generic Malware Malicious Library Malicious Packer UPX PE File ftp PE64 OS Processor Check PDB
0.8 ZeroCERT

6101 2024-09-03 08:50 1.exe  

2978ce3b334332c2bf8e6c45652c599c


Generic Malware Malicious Library UPX AntiDebug AntiVM PE File PE32 OS Processor Check AutoRuns Code Injection Check memory RWX flags setting Windows utilities suspicious process AppData folder Windows RCE DNS
1 6.2 M ZeroCERT

6102 2024-09-03 08:46 dw.exe  

ce4c0b76c5f987153e922371109f666a


UPX PE File PE32 Check memory Checks debugger unpack itself
1.0 ZeroCERT

6103 2024-09-02 19:29 SCPSL_NicknameChanger.exe  

4da72dc49c901dc8e3f05ad298a9c85d


Malicious Library Malicious Packer UPX PE File PE32 OS Processor Check VirusTotal Malware PDB
0.6 1 guest

6104 2024-09-02 19:09 89dd2cc4-7e59-1dd1-c77c-04ad0c...  

36840d6d68314f0453c37097fac4c8d3


AntiDebug AntiVM Email Client Info Stealer suspicious privilege Checks debugger Creates shortcut unpack itself installed browsers check Browser Email ComputerName
3.4 guest

6105 2024-09-02 17:47 도양기업 20240610 송장 갑지.bmp.lnk...  

09b1213c8a336541a4849d65b937293f


Antivirus AntiDebug AntiVM Lnk Format GIF Format wget VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut Creates executable files unpack itself powershell.exe wrote suspicious process WriteConsoleW Windows ComputerName Cryptographic key
2 7.0 30 ZeroCERT