Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
6136 2024-01-25 09:20 stan.exe  

04301ab0e3daa0be320a90c29059f088


Client SW User Data Stealer RedLine stealer RedLine Infostealer RedlineStealer Amadey browser info stealer Themida Packer UltraVNC Generic Malware NSIS Hide_EXE Google Chrome User Data Downloader Malicious Packer Malicious Library UPX .NET frame Browser Info Stealer RedLine Malware download Amadey FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware Cryptocurrency wallets Cryptocurrency Microsoft Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates executable files RWX flags setting exploit crash unpack itself Windows utilities Disables Windows Security Collect installed applications Check virtual network interfaces suspicious process AppData folder malicious URLs AntiVM_Disk WriteConsoleW anti-virtualization IP Check VM Disk Size Check installed browsers check Tofsee Ransomware Stealer Windows Update Exploit Browser RisePro Email ComputerName DNS Cryptographic key Software crashed Downloader
20 22 22 30.0 M 39 ZeroCERT

6137 2024-01-25 09:04 alex.exe  

a615f2eee64c5d7449a8792cc782b6d6


RedLine Infostealer UltraVNC Malicious Library UPX PE32 PE File OS Processor Check VirusTotal Malware PDB suspicious privilege Check memory Checks debugger unpack itself Windows Cryptographic key crashed
3.2 M 30 ZeroCERT

6138 2024-01-25 09:04 conhost.exe  

1898e4173e44594f9dc312cf8622116b


Formbook AntiDebug AntiVM PE32 PE File .NET EXE FormBook Malware download VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces Windows DNS Cryptographic key Downloader
5 10 10 11.8 M 32 ZeroCERT

6139 2024-01-25 09:02 conhost.exe  

639b18e886bd8b899714bcbede9343d3


Admin Tool (Sysinternals etc ...) .NET framework(MSIL) PE32 PE File .NET EXE VirusTotal Malware Check memory Checks debugger unpack itself Windows Cryptographic key
2.2 M 40 ZeroCERT

6140 2024-01-25 09:00 Loader.exe  

8b8c6376bb40d5bd505d1ae0deee9d2c


Generic Malware Malicious Library Malicious Packer UPX PE File PE64 OS Processor Check VirusTotal Malware DNS crashed
3 1 1.6 M 29 ZeroCERT

6141 2024-01-25 09:00 Gzxzuhejdab.exe  

2fadc3984b71f0fd08c832adeedf2b52


Hide_EXE UPX PE32 PE File .NET EXE OS Processor Check VirusTotal Malware suspicious privilege Check memory Checks debugger unpack itself Windows ComputerName Cryptographic key
3.2 M 50 ZeroCERT

6142 2024-01-25 08:58 t7.exe  

88f9483fc5ae7c415d9618257bfbe596


Malicious Library UPX PE32 PE File OS Processor Check DNS
1 1.8 M ZeroCERT

6143 2024-01-25 08:56 bin.exe  

d36b9ed936c51fc667d67cb5fa419a94


Formbook Malicious Library Malicious Packer PE32 PE File FormBook Malware download VirusTotal Malware suspicious privilege Malicious Traffic unpack itself suspicious TLD DNS
4 9 4 3.6 M 53 ZeroCERT

6144 2024-01-25 08:55 swizzy.exe  

239d67b4a07dcc1ea81b612e93bc97ff


PE32 PE File .NET EXE VirusTotal Malware PDB Check memory Checks debugger unpack itself DNS
1 3.2 M 51 ZeroCERT

6145 2024-01-25 08:54 conhost.exe  

8666f07fa7e7240b0f1866c1252cc63f


PWS SMTP KeyLogger AntiDebug AntiVM PE32 PE File .NET EXE Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware PDB suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces IP Check Tofsee Windows Browser Email ComputerName DNS Cryptographic key Software crashed keylogger
4 5 12.8 M 32 ZeroCERT

6146 2024-01-25 08:53 Awwnbpxqsf.exe  

7115d6d1f8c8f7df0564dfd3e5201392


Hide_EXE .NET framework(MSIL) Anti_VM PE32 PE File .NET EXE VirusTotal Malware AutoRuns suspicious privilege Check memory Checks debugger unpack itself Windows Cryptographic key
4.0 M 42 ZeroCERT

6147 2024-01-24 13:27 edca71eda8650a2c591c37c780b6a0...  

edca71eda8650a2c591c37c780b6a0c5


Malicious Library UPX PE File DLL PE64 OS Processor Check VirusTotal Malware Check memory Checks debugger unpack itself crashed
2.8 46 ZeroCERT

6148 2024-01-24 09:44 StealerClient_Cpp.exe  

910a8c9c1a1c5ae9af654fe148d885d1


Malicious Library Malicious Packer UPX PE32 PE File OS Processor Check VirusTotal Malware
1.2 M 50 ZeroCERT

6149 2024-01-24 09:42 StealerClient_Cpp_1_3.exe  

be1d8fb7825e9cd0f2572096d60bbd5f


Malicious Library Malicious Packer UPX PE32 PE File OS Processor Check VirusTotal Malware
1.2 M 51 ZeroCERT

6150 2024-01-24 09:39 crypted_d786fd3e.exe  

8f1d79f77c7f0c6bc7fe6c1361cc6919


PE32 PE File .NET EXE VirusTotal Malware PDB Check memory Checks debugger unpack itself
2.6 M 46 ZeroCERT