Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
6451 2021-03-23 18:30 VZR.exe  

fc7c1d93d598a03632552cb838f466e1


Google Chrome User Data browser info stealer VirusTotal Malware Buffer PE AutoRuns Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself suspicious process Windows DNS
11.2 M 17 ZeroCERT

6452 2021-03-24 07:43 gf.gif  

7e9de3d14155debd7365607e49e794f7

VirusTotal Malware Check memory Checks debugger unpack itself
1 1.2 6 ZeroCERT

6453 2021-03-24 07:53 44278.696505787.dat  

90fa9157a12ba1cef7f7285b103d5739

Check memory Checks debugger unpack itself Tofsee
2 1 0.8 ZeroCERT

6454 2021-03-24 07:58 44278.696505787.dat  

90fa9157a12ba1cef7f7285b103d5739

Malware MachineGuid Malicious Traffic Check memory Checks debugger buffers extracted ICMP traffic unpack itself Tofsee
1 3 1 4.0 ZeroCERT

6455 2021-03-24 08:09 gf.gif  

7e9de3d14155debd7365607e49e794f7

VirusTotal Malware MachineGuid Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Tofsee
1 3 1 3.6 M 6 ZeroCERT

6456 2021-03-24 10:08 AVR.exe  

ced8ae835d857fa6b1d6a49f4733ac66


Google Chrome User Data browser info stealer VirusTotal Malware Buffer PE AutoRuns Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself suspicious process Windows
10.6 M 18 ZeroCERT

6457 2021-03-24 10:10 winlog.exe  

51beebfe8676115fc2a11686b9817396

FormBook Malware download VirusTotal Malware suspicious privilege Malicious Traffic Check memory Creates executable files ICMP traffic unpack itself AppData folder sandbox evasion DNS
24 25 2 6.4 M 25 ZeroCERT

6458 2021-03-24 10:11 file.exe  

8b6e54917a40e532d4154086b6f05e12


Glupteba Malicious Library VirusTotal Malware PDB unpack itself Windows Remote Code Execution crashed
2.8 M 25 ZeroCERT

6459 2021-03-24 10:11 Client-0.exe  

b4282c7f3fa918a48c6cc2a8d1872764


AsyncRAT backdoor VirusTotal Malware AutoRuns suspicious privilege Check memory Checks debugger WMI Creates shortcut Creates executable files unpack itself Windows utilities suspicious process AppData folder AntiVM_Disk WriteConsoleW Ransom Message Firewall state off VM Disk Size Check Ransomware Windows ComputerName DNS crashed
15.0 M 39 ZeroCERT

6460 2021-03-24 10:13 44278.5617880787.dat  

8e23ed51c8c7fea74eb2e3b0a61690f3

Malware MachineGuid Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Tofsee DNS
1 4 1 4.2 ZeroCERT

6461 2021-03-24 10:13 Update%20of%20the%20OFFICE%20P...  

b4cf2053d95d4fbfc4b28083e509ff47


Antivirus VirusTotal Malware powershell Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted heapspray Creates shortcut unpack itself Check virtual network interfaces suspicious process WriteConsoleW human activity check Windows ComputerName DNS Cryptographic key DDNS
1 3 1 18.6 14 ZeroCERT

6462 2021-03-24 10:24 az1.exe  

61968c8debeae1e415a485c0b4d79b46

VirusTotal Malware DNS crashed
1.4 15 ZeroCERT

6463 2021-03-24 10:25 far1.exe  

c270e01d22df1cf517f86b5e4750b312

VirusTotal Malware unpack itself crashed
1.2 9 ZeroCERT

6464 2021-03-24 10:27 gerte523d.exe  

98aca6c94ef680b24885d1462ccc36af

VirusTotal Malware unpack itself DNS crashed
2.0 10 ZeroCERT

6465 2021-03-24 10:27 Clientnik.txt  

3e0c0275c22f75048511cbcbdcca3641


AsyncRAT backdoor VirusTotal Malware AutoRuns suspicious privilege Check memory Checks debugger WMI Creates shortcut Creates executable files unpack itself Windows utilities suspicious process AppData folder AntiVM_Disk WriteConsoleW Firewall state off VM Disk Size Check Ransomware Windows ComputerName crashed
14.8 M 39 ZeroCERT