Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
6361 2024-01-12 07:58 blues.exe  

e494fc161f1189138d1ab2a706b39303


Generic Malware UPX Antivirus Hide_URL PE File PE64 PowerShell powershell suspicious privilege MachineGuid Check memory Checks debugger Creates shortcut unpack itself powershell.exe wrote suspicious process Windows ComputerName Cryptographic key
3.8 M ZeroCERT

6362 2024-01-11 10:47 LUMMA.exe  

d6827143dea10743fbe533e6430574e8


Generic Malware Malicious Library Malicious Packer UPX PE32 PE File .NET EXE OS Processor Check VirusTotal Malware PDB Check memory Checks debugger unpack itself ComputerName
2.2 M 37 ZeroCERT

6363 2024-01-11 10:12 release.rar  

055bfe6e7bbf803236c3b1552f2ca0b1


Escalate priviledges PWS KeyLogger AntiDebug AntiVM Malware suspicious privilege Malicious Traffic Check memory Checks debugger Creates executable files unpack itself IP Check Tofsee DNS
5 9 4 4.2 ZeroCERT

6364 2024-01-11 10:01 Installer-Install-2023_v0y.6.6...  

6d07e04a6926d1dd6cc7805f866114a4


.NET framework(MSIL) PE32 PE File .NET EXE VirusTotal Malware suspicious privilege Check memory Checks debugger unpack itself AntiVM_Disk VM Disk Size Check Windows ComputerName Cryptographic key
3.0 39 ZeroCERT

6365 2024-01-11 09:59 JAN-122661-F2024.url  

d49e5049684aaa8d14a407ac08ddb3be


AntiDebug AntiVM URL Format MSOffice File VirusTotal Malware Code Injection RWX flags setting exploit crash unpack itself Windows utilities Tofsee Windows Exploit DNS crashed
1 2 5.2 4 ZeroCERT

6366 2024-01-11 09:52 Profile.pdf  

7c4a3e36204f13c88e2aed0c49a40571


PDF
ZeroCERT

6367 2024-01-11 07:37 ScholarshipHamilton.exe  

f48ff00102947acd17461bd8cbca9b71


Malicious Library Malicious Packer UPX PE32 PE File OS Processor Check VirusTotal Malware PDB unpack itself AntiVM_Disk VM Disk Size Check
2.0 34 ZeroCERT

6368 2024-01-11 07:37 build.exe  

1d5084678b97f142dc7c3ea12304cbb6


Gen1 Generic Malware Malicious Library Malicious Packer UPX Antivirus Anti_VM PE File PE64 DLL OS Processor Check ftp wget VirusTotal Malware Check memory Creates executable files unpack itself
3.2 40 ZeroCERT

6369 2024-01-11 07:36 santa.exe  

42d990690985f79c5f131af8cb5f9fdb


Admin Tool (Sysinternals etc ...) UPX PE32 PE File VirusTotal Malware WMI RWX flags setting ComputerName Remote Code Execution crashed
3.0 53 ZeroCERT

6370 2024-01-11 00:09 https://onedrive.live.com/down...  


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM PNG Format MSOffice File JPEG Format Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
2 2 4.2 Malwr

6371 2024-01-10 09:35 js.jpg.exe  

efa95e11bde5f4d64b396d8d741c6cfd


PE32 PE File DLL .NET DLL VirusTotal Malware PDB
1.4 42 ZeroCERT

6372 2024-01-10 09:31 mm.txt.exe  

af0577837683f80c555a27e9af137a55


Malicious Library PE32 PE File VirusTotal Malware Check memory RWX flags setting AntiVM_Disk sandbox evasion VM Disk Size Check Browser DNS
1 4.2 M 58 guest

6373 2024-01-10 09:30 getamIWillSmith.ps1  

909d5c024a05aecf8ce268cce07c2e30


Generic Malware Antivirus VirusTotal Malware Check memory unpack itself WriteConsoleW Windows Cryptographic key
1.4 2 guest

6374 2024-01-10 09:27 4.exe  

913edccd8dd523f0c257a7f55598a19f


PE32 PE File VirusTotal Malware
1.6 M 46 ZeroCERT

6375 2024-01-10 09:27 3.exe  

a8dace7c846f4ef07bb755707a0dd1b0


PE32 PE File VirusTotal Malware
1.4 M 35 ZeroCERT