Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
7351 2024-08-05 07:47 r.exe  

acc4944e363d62de63208ce558964af3


Malicious Packer PE File .NET EXE PE32 PDB Check memory Checks debugger unpack itself suspicious process WriteConsoleW ComputerName
1.8 M ZeroCERT

7352 2024-08-04 18:05 theoryspecializedpro.exe  

680af4923dc7b8ce1c06516ce06d17d3


Gen1 Emotet RedLine stealer Malicious Library UPX .NET framework(MSIL) PE File PE64 CAB .NET EXE PE32 OS Processor Check VirusTotal Malware AutoRuns PDB Check memory Checks debugger Creates executable files unpack itself AppData folder WriteConsoleW Windows ComputerName RCE
5.0 54 ZeroCERT

7353 2024-08-04 18:02 mrsprojectionspro.exe  

75097944c089d35d77e365650435f1e8


Gen1 Emotet Malicious Library UPX Malicious Packer .NET framework(MSIL) PE File PE64 CAB .NET EXE PE32 VirusTotal Malware AutoRuns PDB Check memory Checks debugger Creates executable files unpack itself AppData folder Windows ComputerName RCE
5.0 52 ZeroCERT

7354 2024-08-04 18:02 sisterleadpro.exe  

de09178279dc2c6cc007882395325c61


Gen1 Emotet Malicious Library UPX .NET framework(MSIL) PE File PE64 CAB .NET EXE PE32 VirusTotal Malware AutoRuns PDB Check memory Checks debugger Creates executable files unpack itself AppData folder Windows ComputerName RCE
5.0 53 ZeroCERT

7355 2024-08-04 18:01 sostener.vbs  

4251cdf5118a888228fb3b5b2bf6b8e8


Generic Malware Antivirus Hide_URL PowerShell VirusTotal Malware powershell suspicious privilege Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut unpack itself Check virtual network interfaces suspicious process WriteConsoleW Tofsee Windows ComputerName Cryptographic key
1 2 1 10.0 16 ZeroCERT

7356 2024-08-04 17:59 mycuteflowergirlsheisneedmetoo...  

e0f24c59ceb5803155f7c2cac0043688


Generic Malware Antivirus Hide_URL PowerShell VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Check virtual network interfaces suspicious process WriteConsoleW Tofsee Windows ComputerName Cryptographic key
1 2 1 7.6 M 5 ZeroCERT

7357 2024-08-04 17:58 mycuteflowergirlsheisneedmetoo...  

e0f24c59ceb5803155f7c2cac0043688


Generic Malware Antivirus Hide_URL PowerShell VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Check virtual network interfaces suspicious process WriteConsoleW Tofsee Windows ComputerName Cryptographic key
1 2 1 7.6 M 5 ZeroCERT

7358 2024-08-04 17:57 nativee.jpg.exe  

d4a731a4d6b8b45908fcf6b12fd50e4d


Generic Malware Malicious Library UPX PE File DLL PE32 .NET DLL OS Processor Check VirusTotal Malware PDB
0.6 1 ZeroCERT

7359 2024-08-04 17:56 mereallywantrosethingstobegrea...  

e6e98b552bb784fd185d68f52baed802


Generic Malware Antivirus Hide_URL PowerShell VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Check virtual network interfaces suspicious process WriteConsoleW Tofsee Windows ComputerName Cryptographic key
1 2 1 7.6 M 5 ZeroCERT

7360 2024-08-04 17:56 Autoupdate.exe  

a63c3cbc7ecff571542f877e0257cae2


Emotet Gen1 HermeticWiper Generic Malware NSIS NMap Malicious Library Antivirus UPX ASPack Malicious Packer Admin Tool (Sysinternals etc ...) Downloader Anti_VM PE File PE32 MZP Format OS Processor Check DllRegisterServer dll HWP ActiveXObject CAB .NET EX VirusTotal Malware AutoRuns suspicious privilege MachineGuid Check memory Checks debugger Creates shortcut Creates executable files unpack itself Check virtual network interfaces AppData folder AntiVM_Disk VM Disk Size Check installed browsers check Windows Browser ComputerName
6.2 M 71 ZeroCERT

7361 2024-08-04 17:56 Submit task v3.0.0.4.exe  

1fe2d68fc2915ff7aab045e181dbd25b


Malicious Library UPX PE File PE32 VirusTotal Malware Check memory unpack itself crashed
3.4 47 ZeroCERT

7362 2024-08-04 17:55 releaseform.pdf.lnk  

8f1219932acc77e61e012647ce45057f


Generic Malware Antivirus AntiDebug AntiVM Lnk Format GIF Format VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut unpack itself powershell.exe wrote suspicious process WriteConsoleW Windows ComputerName Cryptographic key
4.6 9 ZeroCERT

7363 2024-08-04 17:48 todaynatoday.vbs  

75cfe669932a24cf26ac9365e62a1610


Generic Malware Antivirus Hide_URL PowerShell VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Check virtual network interfaces suspicious process WriteConsoleW Tofsee Windows ComputerName Cryptographic key
1 2 1 7.6 M 4 ZeroCERT

7364 2024-08-04 17:45 pic7.jpg.exe  

e219acd0a358a6fd72cb005b00d4952f


Gen1 Emotet Malicious Library UPX AntiDebug AntiVM PE File PE64 CAB VirusTotal Malware AutoRuns PDB MachineGuid Code Injection Check memory Checks debugger Creates executable files unpack itself suspicious process Windows ComputerName RCE
6.2 M 41 ZeroCERT

7365 2024-08-04 17:45 powercat.ps1  

8a319fa42e7c7432318f28a990f15696


Generic Malware Antivirus VirusTotal Malware unpack itself
1.6 41 ZeroCERT