Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
6526 2021-03-25 18:45 svchost.exe  

ef18ea0a1fee816a7bf12005cf7553c4


Azorult .NET framework VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself suspicious process Windows ComputerName Cryptographic key
10.2 M 34 ZeroCERT

6527 2021-03-25 19:12 mazx.scr  

78f2e07eec242e1d089e1515e2507442

VirusTotal Malware Check memory Checks debugger unpack itself
1.6 20 ZeroCERT

6528 2021-03-25 19:15 shedyx.scr  

ee27001b12f64424922ea7978a8e98c5


Antivirus AsyncRAT backdoor Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware powershell suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut unpack itself Disables Windows Security powershell.exe wrote Check virtual network interfaces suspicious process WriteConsoleW Tofsee Windows Browser Email ComputerName Cryptographic key Software crashed keylogger
6 2 1 15.0 17 ZeroCERT

6529 2021-03-25 19:17 bobox.scr  

8bd5a5bc75611db2959a80fcc1b09fc8


Antivirus AsyncRAT backdoor Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware powershell suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut unpack itself Disables Windows Security powershell.exe wrote Check virtual network interfaces suspicious process WriteConsoleW Tofsee Windows Browser Email ComputerName Cryptographic key Software crashed keylogger
6 2 1 15.0 M 12 ZeroCERT

6530 2021-03-25 19:19 topboix.scr  

fb9211bd03036666dcc42cf977c25bee


Antivirus AsyncRAT backdoor FormBook Malware download VirusTotal Malware powershell suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut unpack itself Windows utilities Disables Windows Security powershell.exe wrote Check virtual network interfaces suspicious process AppData folder WriteConsoleW Tofsee Windows ComputerName Cryptographic key crashed
7 10 2 13.8 M 18 ZeroCERT

6531 2021-03-26 07:59 r6x7x6rf.zip  

d51dfce479bc8731a7489fabec3538c6


Gen VirusTotal Malware PDB unpack itself crashed
1.2 M 5 ZeroCERT

6532 2021-03-26 07:59 re5.exe  

156f62525b7fa5212b9fd44eda731467

VirusTotal Malware Check memory unpack itself AntiVM_Disk sandbox evasion VM Disk Size Check DNS
3.2 M 20 ZeroCERT

6533 2021-03-26 08:01 cow.dll  

d3e6640ebe73f0e428deba4768db48bf

VirusTotal Malware AutoRuns Malicious Traffic Creates executable files unpack itself Windows ComputerName
1 2 3.4 M 13 ZeroCERT

6534 2021-03-26 08:02 yugox.scr  

35aef117625b21a776d05321eac95628


Antivirus Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware powershell suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut unpack itself Disables Windows Security powershell.exe wrote suspicious process WriteConsoleW Windows Browser Email ComputerName DNS Cryptographic key Software crashed keylogger
14.4 M 14 ZeroCERT

6535 2021-03-26 08:03 kdhw08pfb.rar  

b66ebcc65348e4b16a0e5406ed4da0e7


Gen VirusTotal Malware PDB unpack itself crashed
1.4 M 10 ZeroCERT

6536 2021-03-26 08:05 kdotx.scr  

899830be8695c78d6de6c199afde238b


AsyncRAT backdoor VirusTotal Malware
1 1.0 M 34 ZeroCERT

6537 2021-03-26 08:06 igbo.exe  

a06a7f5eebcc8775298bc39c7a8a8467


Azorult .NET framework VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows DNS Cryptographic key
8.0 M 26 ZeroCERT

6538 2021-03-26 08:08 char.exe  

dd37cba6f5ef3ea92794b565c7ecd028


Azorult .NET framework VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows DNS Cryptographic key
8.0 M 20 ZeroCERT

6539 2021-03-26 14:33 lol.exe  

43ee0f8e53e7a8bc3b2fb2e69fe0f198


Azorult .NET framework VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows ComputerName Cryptographic key crashed
8.8 15 guest

6540 2021-03-26 15:10 dl8x64.exe  

b5cb5ac79b76d8db06f631e4ab461074


Emotet Gen VirusTotal Malware buffers extracted RWX flags setting unpack itself DNS crashed
3.6 9 ZeroCERT