Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
7291 2021-04-16 09:34 catalog-649822080.xlsm  

23fda0e556cfedba000e4510e40b090c


Check memory unpack itself Tofsee crashed
4 7 2 2 3.2 ZeroCERT

7292 2021-04-16 09:34 KakaoTalk_20210415_170953847_0...  

9890178eb6e041437e80784983b1e3e5

Kim.GS

7293 2021-04-16 09:35 catalog-649166437.xlsm  

bd71cc9af8cdeececc41a6484cf5dbf4


VirusTotal Malware Check memory unpack itself Tofsee DNS crashed
4 7 2 2 4.4 11 ZeroCERT

7294 2021-04-16 09:37 catalog-64852490.xlsm  

7d5bcecf80df4dd2ba51da0ec80037fe


Check memory ICMP traffic unpack itself Tofsee crashed
4 7 2 2 4.0 ZeroCERT

7295 2021-04-16 09:55 catalog-651450025.xlsm  

57aba2732b2168b1914c8b5a49369de4


VirusTotal Malware Check memory unpack itself Tofsee crashed
4 7 2 2 3.8 11 ZeroCERT

7296 2021-04-16 09:56 catalog-64874377.xlsm  

608719001a3fbf939763a416e80f1410


VirusTotal Malware ICMP traffic unpack itself Tofsee DNS
7 7 2 2 4.8 13 ZeroCERT

7297 2021-04-16 09:56 catalog-651041236.xlsm  

eedd85d33f91ca72acae1df084d2d373


Check memory unpack itself Tofsee crashed
7 7 2 2 3.2 ZeroCERT

7298 2021-04-16 09:58 arinzex.exe  

a1cbbd791b91f550f8cac674ba927702


Azorult .NET framework AsyncRAT backdoor Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows Browser Email ComputerName Cryptographic key Software crashed
2 11.6 M 24 ZeroCERT

7299 2021-04-16 09:58 atualiza_tec.exe  

a6ac13ea37c979e7623b73b8ac8670eb

VirusTotal Malware Check memory ICMP traffic unpack itself Windows DNS crashed
1 2 1 4.0 10 ZeroCERT

7300 2021-04-16 10:00 orr7-09.exe  

ff1c23657f869593e946b38c5c1dad86


Azorult .NET framework AsyncRAT backdoor suspicious privilege Code Injection Check memory Checks debugger unpack itself Windows utilities suspicious process WriteConsoleW Windows ComputerName DNS Cryptographic key
6.6 M ZeroCERT

7301 2021-04-16 10:00 Gracia.exe  

9c4d38ba3433603d3fe4a2f69a369c7c


Azorult .NET framework AsyncRAT backdoor VirusTotal Malware Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities suspicious process AppData folder WriteConsoleW human activity check Windows ComputerName DNS Cryptographic key DDNS
3 1 17.4 M 28 ZeroCERT

7302 2021-04-16 10:02 xxxx9.exe  

9c9aece48bab34ff089036a7474a8614


Azorult .NET framework AsyncRAT backdoor VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger unpack itself Windows Cryptographic key
5.0 M 16 ZeroCERT

7303 2021-04-16 10:03 cee.exe  

8acb0cdc2e3276a94476bb61d771a02f


Azorult .NET framework AsyncRAT backdoor VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows ComputerName DNS Cryptographic key crashed
9.4 M 16 ZeroCERT

7304 2021-04-16 10:04 svchost.exe  

60e62a0a65f71bb07c9535d3cd209b46


Azorult .NET framework AsyncRAT backdoor VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger unpack itself suspicious process Windows Cryptographic key
6.0 M 24 ZeroCERT

7305 2021-04-16 10:05 vbc.exe  

ffc73a26a666a82c595a3c80fc258639


Azorult .NET framework AsyncRAT backdoor VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows ComputerName DNS Cryptographic key crashed
9.6 M 22 ZeroCERT