Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
8146 2023-09-30 13:24 Fix.exe  

52e507f8cbdf95493c5963ddba10968e


Generic Malware Malicious Library UPX Admin Tool (Sysinternals etc ...) Obsidium protector Malicious Packer PE File PE32 OS Processor Check ftp MZP Format DLL PNG Format VirusTotal Malware PDB Malicious Traffic Check memory buffers extracted Creates executable files unpack itself AppData folder Tofsee ComputerName
1 2 1 4.6 M 30 ZeroCERT

8147 2023-09-30 13:21 StealerClient_Cpp.exe  

e6692c8fef5862964a4a82d5c58ba709


Malicious Library UPX Malicious Packer PE File PE32 OS Processor Check VirusTotal Malware
1.2 M 56 ZeroCERT

8148 2023-09-30 13:21 Elize123.exe  

f340d31e095009d1db8f40c06abe32ce


UPX PWS SMTP AntiDebug AntiVM PE File PE32 .NET EXE Browser Info Stealer RedLine Malware download FTP Client Info Stealer VirusTotal Malware Microsoft suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Collect installed applications installed browsers check Stealer Windows Browser ComputerName DNS Cryptographic key Software crashed
1 3 11.0 M 52 ZeroCERT

8149 2023-09-30 13:19 RBY1.exe  

12fdbbf78bb7d4caa336ccf05d762bcb


UPX PE File PE32 .NET EXE VirusTotal Malware Buffer PE PDB Check memory Checks debugger buffers extracted unpack itself Windows Cryptographic key
3.8 M 48 ZeroCERT

8150 2023-09-30 13:19 vY7NqPNdCvuT7Sy.exe  

d928fd4dc7d2859adc7e285912a701ac


.NET framework(MSIL) PE File PE32 .NET EXE VirusTotal Malware PDB suspicious privilege Check memory Checks debugger unpack itself Windows ComputerName crashed
4.6 M 51 ZeroCERT

8151 2023-09-30 13:17 Wtwvjbwnht.exe  

ea462e6077aa3e3c7573dd51206c7e4e


Formbook UPX .NET framework(MSIL) AntiDebug AntiVM PE File PE32 .NET EXE FormBook Malware download VirusTotal Malware Buffer PE suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces malicious URLs suspicious TLD Windows DNS Cryptographic key
23 25 11 19 13.2 M 52 ZeroCERT

8152 2023-09-30 13:17 greeecousinnnnnnnfrilPulGj0ozA...  

c58659f0aa2577165d9851c741ce3d41


.NET framework(MSIL) PE File PE32 .NET EXE Browser Info Stealer VirusTotal Email Client Info Stealer Malware PDB suspicious privilege Check memory Checks debugger buffers extracted unpack itself Windows Browser Email ComputerName Cryptographic key crashed
5.0 M 53 ZeroCERT

8153 2023-09-30 13:17 verbose.exe  

fd128ec183aa8d4db76e08153a4a43ab


Generic Malware Malicious Library UPX Malicious Packer PE File PE64 OS Processor Check VirusTotal Malware PDB Remote Code Execution
2.2 M 44 ZeroCERT

8154 2023-09-30 13:16 UNIQTRAFF.exe  

eb69edce4df4ed81ecb296f24def4efe


RedLine Infostealer RedLine stealer UPX .NET framework(MSIL) Confuser .NET PE File PE32 .NET EXE OS Processor Check Browser Info Stealer RedLine Malware download FTP Client Info Stealer VirusTotal Malware Microsoft suspicious privilege Check memory Checks debugger buffers extracted unpack itself Collect installed applications installed browsers check Stealer Windows Browser ComputerName DNS Cryptographic key Software crashed
1 5 6.2 M 47 ZeroCERT

8155 2023-09-30 13:16 StealerClient_Sharp.exe  

3447aacee641ed00bab15a3df7818b7f


Malicious Library UPX .NET framework(MSIL) Malicious Packer PE File PE32 .NET EXE OS Processor Check VirusTotal Malware Check memory Checks debugger unpack itself ComputerName Remote Code Execution
2.4 M 56 ZeroCERT

8156 2023-09-30 13:13 tedzx.exe  

93927d564bb0622b7892d0dc7c797805


.NET framework(MSIL) PWS KeyLogger AntiDebug AntiVM PE File PE32 .NET EXE Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware PDB suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces IP Check Tofsee Windows Browser Email ComputerName DNS Software crashed keylogger
2 4 11.8 M 48 ZeroCERT

8157 2023-09-30 13:12 alteredcasbon7RVuMkLvXuAoxru.e...  

2fd8ea6c13a0fb49a278b1afb309e433


.NET framework(MSIL) PE File PE32 .NET EXE VirusTotal Malware PDB Check memory Checks debugger buffers extracted unpack itself Windows Cryptographic key
3.2 58 ZeroCERT

8158 2023-09-30 13:10 UMM.exe  

9fa0492f671ae03b7785f7ada9a5ba8b


UPX PE File PE32 .NET EXE OS Processor Check VirusTotal Malware Buffer PE PDB Check memory Checks debugger buffers extracted unpack itself Windows ComputerName Cryptographic key
3.6 M 23 ZeroCERT

8159 2023-09-30 13:09 mtdocs.exe  

7ff646fbaa5bb955d1b0cfaffaf61cb2


Formbook NSIS Malicious Library UPX PE File PE32 FormBook Malware download VirusTotal Malware suspicious privilege Malicious Traffic Check memory Creates executable files unpack itself
5 10 1 3 4.2 M 58 ZeroCERT

8160 2023-09-30 13:09 installs.exe  

0508858aafafa001652f27d51ed4872b


Malicious Library PE File PE32 Browser Info Stealer RedLine Malware download FTP Client Info Stealer VirusTotal Malware Microsoft suspicious privilege Check memory Checks debugger buffers extracted WMI unpack itself Collect installed applications installed browsers check Stealer Windows Browser ComputerName DNS Cryptographic key Software crashed
1 5 7.8 54 ZeroCERT