Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
6436 2024-01-02 07:48 HomepageReverse.exe  

be8cdde4842fd762856c98114130651e


Generic Malware Suspicious_Script_Bin Hide_EXE Downloader UPX Admin Tool (Sysinternals etc ...) Malicious Library Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection In VirusTotal Malware Buffer PE suspicious privilege Code Injection Checks debugger buffers extracted WMI Creates executable files unpack itself Windows utilities AppData folder malicious URLs sandbox evasion WriteConsoleW Windows ComputerName DNS
2 9.0 M 32 ZeroCERT

6437 2024-01-02 07:46 mm.txt  

623d28815c85957bafdd79395e2227c9


Malicious Library PE32 PE File VirusTotal Malware Check memory RWX flags setting AntiVM_Disk VM Disk Size Check Browser DNS
1 3.8 M 62 ZeroCERT

6438 2024-01-02 07:45 kkm_2245.exe  

8c1279098d87e19ccc488a4b04a77e45


Malicious Library UPX .NET framework(MSIL) PE32 PE File DLL .NET DLL OS Processor Check PNG Format ftp .NET EXE Lnk Format GIF Format VirusTotal Malware AutoRuns Check memory Creates shortcut Creates executable files unpack itself AppData folder Windows ComputerName
3.4 M 17 ZeroCERT

6439 2024-01-02 07:45 XDisk.exe  

b6bbdd51556f752b034a1a74f54808e2


Malicious Library UPX PE File PE64 VirusTotal Malware Creates executable files Windows utilities WriteConsoleW Windows
2.4 M 18 ZeroCERT

6440 2024-01-02 07:44 kkm.exe  

2bd2b08ca47144328cbc68041d8714be


Malicious Library UPX .NET framework(MSIL) Anti_VM PE32 PE File DLL .NET DLL OS Processor Check PNG Format Lnk Format GIF Format .NET EXE ftp VirusTotal Malware AutoRuns Check memory Creates shortcut Creates executable files unpack itself AppData folder Windows ComputerName
3.6 M 28 ZeroCERT

6441 2024-01-02 07:43 kkm_2335.exe  

6d37f5e29d1c1f2635704bf043a58cd1


Malicious Library UPX .NET framework(MSIL) Anti_VM PE32 PE File DLL .NET DLL OS Processor Check PNG Format ftp .NET EXE JPEG Format Lnk Format GIF Format VirusTotal Malware AutoRuns Check memory Creates shortcut Creates executable files unpack itself AppData folder Windows ComputerName
3.6 M 29 ZeroCERT

6442 2024-01-02 07:43 tuc7.exe  

556c622165478f54c7894abcb56c5bd1


Emotet Gen1 Generic Malware Malicious Library UPX Malicious Packer Admin Tool (Sysinternals etc ...) PE32 PE File MZP Format DLL OS Processor Check PE64 DllRegisterServer dll ZIP Format VirusTotal Malware Check memory Checks debugger Creates executable files unpack itself Windows utilities AppData folder WriteConsoleW Windows ComputerName crashed
5.0 19 ZeroCERT

6443 2024-01-02 07:41 syncUpd.exe  

88cdb606728918e779aa4ea58541f3c2


Malicious Library PE32 PE File unpack itself Remote Code Execution
1.2 ZeroCERT

6444 2024-01-02 07:39 fuckjewishpeople.sparc  

ba8542b6e1f1e16090485a52b989ce3d


AntiDebug AntiVM ELF VirusTotal Email Client Info Stealer Malware suspicious privilege Checks debugger Creates shortcut unpack itself installed browsers check Browser Email ComputerName
4.6 M 41 ZeroCERT

6445 2024-01-02 07:38 OriginalBuild.exe  

f1ca55e0638b3e0b130a7f59a4029bee


Eredel Stealer Extended Malicious Library .NET framework(MSIL) UPX PE32 PE File .NET EXE OS Processor Check VirusTotal Malware Check memory Checks debugger unpack itself Windows ComputerName Cryptographic key
1.8 12 ZeroCERT

6446 2024-01-01 17:23 tuc5.exe  

167e8f678e08d79d2039086428bbfa3c


Emotet Gen1 Generic Malware Malicious Library UPX Malicious Packer Admin Tool (Sysinternals etc ...) PE32 PE File MZP Format DLL OS Processor Check PE64 DllRegisterServer dll ZIP Format VirusTotal Malware Checks debugger Creates executable files unpack itself Windows utilities AppData folder WriteConsoleW Windows ComputerName crashed
4.0 6 ZeroCERT

6447 2024-01-01 17:23 sl97_2.exe  

3b1d15b557762c579fff9346a1d32ac2


PE File PE64 VirusTotal Malware crashed
1.2 M 36 ZeroCERT

6448 2024-01-01 06:56 XClient.exe  

a4e4db3529f3699fabe1d01208c5f396


Malicious Library Antivirus UPX PE32 PE File .NET EXE OS Processor Check suspicious privilege MachineGuid Check memory Checks debugger unpack itself AntiVM_Disk VM Disk Size Check Windows ComputerName Cryptographic key
2.8 guest

6449 2023-12-31 21:17 StrikeNet.exe  

f2c62f2ee6aa94509c39557a628534a1


.NET framework(MSIL) PE32 PE File .NET EXE VirusTotal Malware suspicious privilege MachineGuid Check memory Checks debugger unpack itself Windows utilities suspicious process AppData folder WriteConsoleW Windows ComputerName
5.6 M 51 guest

6450 2023-12-31 21:13 WWW14_64.exe  

24fbc8705072bb32a6ac2fc995a66f17


Generic Malware Malicious Library VMProtect UPX PE File PE64 VirusTotal Malware unpack itself Disables Windows Security Windows DNS crashed
4 5.2 M 55 guest