Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
6286 2024-08-23 09:31 66c74e1a9051a_install.exe#inst  

6614e50be6c3d1fc6392c46f9cc12a9b


Malicious Library Malicious Packer UPX PE File .NET EXE PE32 OS Processor Check VirusTotal Malware PDB Check memory Checks debugger unpack itself ComputerName RCE
2.6 M 18 ZeroCERT

6287 2024-08-23 09:30 66c74ba23d580_stealc_cry.exe#k...  

522dd9b39873f815572fb766b67c77b6


Antivirus PE File .NET EXE PE32 VirusTotal Malware PDB Check memory Checks debugger unpack itself WriteConsoleW ComputerName
2.8 M 30 ZeroCERT

6288 2024-08-23 09:30 crown.exe  

b0c5a7e82d19864c77427dd2f5185934


Stealc Gen1 Generic Malware Admin Tool (Sysinternals etc ...) Malicious Library UPX Malicious Packer Anti_VM PE File PE32 DLL OS Processor Check Browser Info Stealer Malware download FTP Client Info Stealer Vidar VirusTotal Email Client Info Stealer Malware c&c Malicious Traffic Check memory Checks debugger Creates executable files unpack itself Checks Bios Collect installed applications Detects VMWare sandbox evasion VMware anti-virtualization installed browsers check Stealc Stealer Windows Browser Email ComputerName DNS Software crashed plugin
9 1 16 2 12.2 M 29 ZeroCERT

6289 2024-08-23 09:28 shellcode.ps1  

5dd40b8cbfb8f613cdce8b7dae0de85b


Generic Malware Antivirus suspicious privilege Check memory unpack itself WriteConsoleW Windows Cryptographic key
1.4 M ZeroCERT

6290 2024-08-23 09:27 soft.exe  

a805c895c507a30f12e39e04f55a7bf1


Antivirus UPX PE File .NET EXE PE32 OS Processor Check VirusTotal Malware suspicious privilege MachineGuid Check memory Checks debugger unpack itself AntiVM_Disk VM Disk Size Check Windows ComputerName Cryptographic key
4.0 M 52 ZeroCERT

6291 2024-08-23 09:26 66c609c335ba8_crypted.exe#1  

5ea478b85c9222759b2b24d76b5fa098


Antivirus PE File .NET EXE PE32 VirusTotal Malware PDB Check memory Checks debugger unpack itself WriteConsoleW ComputerName
2.8 M 30 ZeroCERT

6292 2024-08-23 09:24 66c74bdca27c5_stealc_default.e...  

278dcb42c883b71ac7e02501936b9e8f


Antivirus PE File .NET EXE PE32 VirusTotal Malware PDB Check memory Checks debugger unpack itself WriteConsoleW ComputerName
3.0 M 41 ZeroCERT

6293 2024-08-23 09:24 66c6def3f0546_sss.exe  

d4ac1a0d0504ab9a127defa511df833e


Malicious Library Socket DNS AntiDebug AntiVM PE File .NET EXE PE32 Lnk Format GIF Format Malware download VirusTotal Malware AutoRuns PDB Code Injection Check memory Checks debugger buffers extracted Creates shortcut Creates executable files unpack itself Windows utilities suspicious process malicious URLs WriteConsoleW Windows RisePro ComputerName DNS
1 3 12.2 M 49 ZeroCERT

6294 2024-08-23 09:22 mewithentirethingstogetmebackw...  

28d95412db3a011684784953657efd12


MS_RTF_Obfuscation_Objects RTF File doc VirusTotal Malware Malicious Traffic RWX flags setting exploit crash Tofsee Exploit DNS crashed
1 3 1 4.6 34 ZeroCERT

6295 2024-08-23 09:22 equitoxxxxxwednesdayyysMPDW-co...  

2315bcb53ea540318897164afb4c7845


Generic Malware Antivirus Hide_URL PowerShell VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Check virtual network interfaces suspicious process WriteConsoleW Tofsee Windows ComputerName Cryptographic key
1 2 1 7.6 2 ZeroCERT

6296 2024-08-23 00:07 7z.exe  

654010478bd5384421502d6bc0be267c


Malicious Library Antivirus PE File .NET EXE PE32 JPEG Format Browser Info Stealer Malware download FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware AutoRuns suspicious privilege Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files unpack itself Check virtual network interfaces AppData folder IP Check installed browsers check Tofsee Windows Browser Email ComputerName DNS Cryptographic key DDNS Software crashed keylogger Downloader
2 7 9 13.8 M 44 guest

6297 2024-08-22 18:08 2.exe  

7cb00da13fecc6e830750d67c836766d


Generic Malware Malicious Library Malicious Packer UPX PE File DllRegisterServer dll PE32 OS Processor Check
0.2 ZeroCERT

6298 2024-08-22 17:02 Setup-240821.exe  

a935bb3143363c1e83dbb323f42b66f0


Emotet Gen1 Generic Malware Malicious Library Malicious Packer ASPack UPX Anti_VM PE File DllRegisterServer dll PE32 OS Processor Check VirusTotal Malware Check memory RCE
2.0 20 ZeroCERT

6299 2024-08-22 16:52 Setup-240821.exe  

a935bb3143363c1e83dbb323f42b66f0


Emotet Gen1 Generic Malware Malicious Library Malicious Packer ASPack UPX Anti_VM PE File DllRegisterServer dll PE32 OS Processor Check VirusTotal Malware RCE crashed
2.0 20 ZeroCERT

6300 2024-08-22 16:48 API481f.zip  

7eef93fde222e77a58d38870e177cda1


ZIP Format Remcos VirusTotal Malware Malicious Traffic DNS
1 5 1 1.8 3 ZeroCERT