Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
6916 2021-04-05 10:50 qs73wd.rar  

6f3d820ee9c069a6710e743d53a9bb25


VirusTotal Malware PDB unpack itself crashed
2.2 M 35 조광섭

6917 2021-04-05 10:57 1.dll  

5512180f20e8279acc4d71abbfeb2433


VirusTotal Malware Checks debugger unpack itself
1.6 M 37 조광섭

6918 2021-04-05 11:01 asse9e3x.rar  

3d0fffa0fe157c3bffb917e6a8d9da2e


Dridex Gen2 Gen1 VirusTotal Malware PDB MachineGuid Malicious Traffic Check memory Checks debugger unpack itself Collect installed applications installed browsers check Browser ComputerName DNS crashed
1 1 1 6.4 M 45 조광섭

6919 2021-04-05 13:24 sfx_123_400.exe  

beadf9b68de9852d44514425663cb3fd

VirusTotal Malware PDB suspicious privilege Code Injection Check memory WMI unpack itself Windows utilities suspicious process AppData folder malicious URLs Windows ComputerName
6.0 M 24 ZeroCERT

6920 2021-04-05 13:24 updatechannel4.exe  

8e9df5d267e02aee6e6e2427fa2e2454


AsyncRAT backdoor VirusTotal Malware AutoRuns MachineGuid Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates executable files unpack itself Check virtual network interfaces AppData folder Windows ComputerName DNS
15 13 7.0 M 32 ZeroCERT

6921 2021-04-05 13:25 done.exe  

4e62febb0ac594a5f0e92021ae54850f


AsyncRAT backdoor VirusTotal Malware MachineGuid Check memory Checks debugger unpack itself AntiVM_Disk VM Disk Size Check
2.8 M 35 ZeroCERT

6922 2021-04-05 13:25 phantom.exe  

c7845e1fc375b2edb666c547c83fb76e

unpack itself Remote Code Execution DNS
1.8 ZeroCERT

6923 2021-04-05 13:28 china.png  

6be41709f8bfbf06307cc56d04249801


AsyncRAT backdoor VirusTotal Malware AutoRuns PDB MachineGuid Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files unpack itself Check virtual network interfaces AppData folder Windows DNS
8 9 6.4 M 49 ZeroCERT

6924 2021-04-05 13:28 updatechannel3.exe  

4f50605a46c47d765ff37b8751760505


AsyncRAT backdoor VirusTotal Malware AutoRuns MachineGuid Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates executable files ICMP traffic unpack itself Check virtual network interfaces AppData folder Windows ComputerName DNS
11 10 7.2 M 20 ZeroCERT

6925 2021-04-05 13:32 du.exe  

176a67399e1fd4d5fc92643e70fdee7f


Glupteba Ficker Stealer AsyncRAT backdoor Browser Info Stealer FTP Client Info Stealer VirusTotal Malware Cryptocurrency wallets Cryptocurrency Buffer PE AutoRuns PDB suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates executable files ICMP traffic unpack itself Windows utilities Collect installed applications Check virtual network interfaces suspicious process AppData folder malicious URLs sandbox evasion anti-virtualization IP Check installed browsers check Ransomware Windows Browser ComputerName DNS Software crashed
9 17 17.8 M 15 ZeroCERT

6926 2021-04-05 14:32 lukkeze.best.exe  

7f1bd38647745b87464b8c696519bfc6


Ficker Stealer VirusTotal Malware IP Check DNS
1 4 3.0 50 ZeroCERT

6927 2021-04-05 14:35 MMP2.exe  

5c6ef834006bdc8697576a9af6cea2b6


Glupteba VirusTotal Malware PDB unpack itself Windows Remote Code Execution DNS crashed
3.8 44 ZeroCERT

6928 2021-04-05 14:41 updatechannel2.exe  

af23b8181c08a65a2aacd3568a1dd46e


AsyncRAT backdoor VirusTotal Malware AutoRuns MachineGuid Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates executable files unpack itself Check virtual network interfaces AppData folder Windows ComputerName DNS
3 10 6.6 M 32 ZeroCERT

6929 2021-04-06 08:18 0504.gif  

937e2c551368757c5e3c3598c41ea7d9

VirusTotal Malware
0.8 19 ZeroCERT

6930 2021-04-06 08:18 ALbaCTlU8DzMcA.php  

3be35148cc6c80994becbcd204d8c33e


Dridex Gene VirusTotal Malware
1.4 22 ZeroCERT