Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
7546 2023-10-20 18:41 7725eaa6592c80f8124e769b4e8a07...  

55f3d435fa139692ab54318a15eb1272


Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware unpack itself
1.8 M 34 ZeroCERT

7547 2023-10-20 18:39 baf14778c246e15550645e30ba78ce...  

41eb8d05203261240efd56a12fe40997


Malicious Library UPX PE File PE32 OS Processor Check unpack itself
0.8 M ZeroCERT

7548 2023-10-20 18:38 7a54bdb20779c4359694feaa1398dd...  

c76c4a17ea2a70829f904bb5d5fed4e2


Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware unpack itself
1.6 M 29 ZeroCERT

7549 2023-10-20 18:36 baf14778c246e15550645e30ba78ce...  

65d5b184ca2df5942a6abec42c242d18


Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware unpack itself
1.8 M 33 ZeroCERT

7550 2023-10-20 18:34 setup2.7z  

3735adf80a188c2b01494f4c914ad709


Stealc Vidar PrivateLoader Amadey Escalate priviledges PWS KeyLogger AntiDebug AntiVM RedLine Malware download Dridex VirusTotal Malware c&c Microsoft Telegram suspicious privilege Malicious Traffic Check memory Checks debugger Creates executable files ICMP traffic unpack itself IP Check PrivateLoader Tofsee Stealc Stealer Windows Browser RisePro Trojan DNS Downloader
60 116 52 39 7.4 M 1 ZeroCERT

7551 2023-10-20 18:17 salut.json.exe  

971dd6c48909adf98861fb8457125faa


Malicious Library UPX Malicious Packer PE File DLL PE64 OS Processor Check VirusTotal Malware PDB Checks debugger unpack itself crashed
2.2 3 ZeroCERT

7552 2023-10-20 18:14 shareu_2.exe  

c3c5b18a7c9594e91c6aff42d26fd5ac


Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware PDB Remote Code Execution
2.2 20 ZeroCERT

7553 2023-10-20 18:12 shareu.exe  

cb8a6ad517b3a3eeb0eb66d90cca43b6


Malicious Library UPX AntiDebug AntiVM PE File PE32 OS Processor Check VirusTotal Malware PDB Code Injection Check memory Creates executable files suspicious process WriteConsoleW Remote Code Execution
6.6 M 22 ZeroCERT

7554 2023-10-20 18:12 Setup.7z  

72b145dcb4456a0892b5b725eec5d1b4


Stealc Vidar PrivateLoader Amadey Escalate priviledges PWS KeyLogger AntiDebug AntiVM RedLine Malware download Dridex Malware c&c Microsoft Telegram suspicious privilege Malicious Traffic Check memory Checks debugger Creates executable files ICMP traffic unpack itself suspicious TLD IP Check PrivateLoader Tofsee Stealc Stealer Windows Discord Browser RisePro Trojan DNS Downloader
68 127 56 36 7.8 M ZeroCERT

7555 2023-10-20 18:11 fra.exe  

22312fe9b0d80938ff7ed706fc584e19


Malicious Library UPX PE File PE32 OS Processor Check Browser Info Stealer RedLine Malware download VirusTotal Malware Microsoft suspicious privilege Check memory Checks debugger buffers extracted unpack itself Collect installed applications installed browsers check Stealer Windows Browser ComputerName DNS Cryptographic key crashed
1 4 6.0 49 ZeroCERT

7556 2023-10-20 18:06 pwng.ps1  

4264a92eea89c33e2f1727db5afca11d


Generic Malware Antivirus Check memory unpack itself WriteConsoleW Windows DNS Cryptographic key
6 2.6 ZeroCERT

7557 2023-10-20 18:05 pwng.ps1  

5a84bbec3102aac19960d5d6c55bc825


Generic Malware Antivirus Check memory unpack itself WriteConsoleW Windows Cryptographic key
1.0 ZeroCERT

7558 2023-10-20 18:05 CCleaner.exe  

15a712903d393839edde2bd426c16172


Emotet Generic Malware Malicious Library UPX Malicious Packer PE File PE64 OS Processor Check PDB unpack itself ComputerName Remote Code Execution
1.6 ZeroCERT

7559 2023-10-20 17:56 a3_2.jpg.exe  

d08f3729495ae6ed7e5d63e605c80cb1


.NET DLL PE File DLL PE32 VirusTotal Malware PDB
1.4 51 ZeroCERT

7560 2023-10-20 17:38 T2Gen.txt.vbs  

7a6846a31383bb152f865c2ebe64cad4


Generic Malware Antivirus PowerShell powershell suspicious privilege Check memory Checks debugger buffers extracted Creates shortcut Creates executable files unpack itself Check virtual network interfaces suspicious process WriteConsoleW Windows ComputerName DNS Cryptographic key
1 1 8.6 M ZeroCERT