Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
8221 2024-07-01 15:33 tsjtmfdm.pkg.exe  

98cc12248c1dfc68103dd9fc4d959f68


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware PDB unpack itself
1.6 26 ZeroCERT

8222 2024-07-01 15:24 outbyte-pc-repair.exe  

044b5657529471e023ee2da2dad94cfa


Gen1 Generic Malware Malicious Library UPX Admin Tool (Sysinternals etc ...) Malicious Packer Antivirus Anti_VM PE File PE32 MZP Format OS Processor Check DLL DllRegisterServer dll ftp PE64 Browser Info Stealer VirusTotal Malware MachineGuid Malicious Traffic Check memory Checks debugger Creates executable files RWX flags setting unpack itself Checks Bios AppData folder AntiVM_Disk anti-virtualization VM Disk Size Check installed browsers check Tofsee Browser ComputerName crashed
1 4 1 8.2 3 ZeroCERT

8223 2024-07-01 15:06 ENC.zip  

34dd73380e19295eef9c195a9f35c9b3


ZIP Format VirusTotal Malware Malicious Traffic Tofsee
8 2 1 1.6 3 ZeroCERT

8224 2024-07-01 14:56 CONT.exe  

1cdf5a27c0f2ceaf51055ed3721d5c32


UPX PE File PE32 VirusTotal Malware PDB RCE
1.0 2 ZeroCERT

8225 2024-07-01 14:56 FIX_0x80070643_(Need_reboot).r...  

177d5e4e498f2a2db92df607fe0e1692


ScreenShot Escalate priviledges KeyLogger AntiDebug AntiVM AutoRuns Code Injection Check memory unpack itself Windows
3 2.2 ZeroCERT

8226 2024-07-01 11:05 MpMgSvc.jpg.exe  

40670d0d30c6855dd2b3db30b81f9ce2


Emotet Generic Malware UPX Malicious Library Malicious Packer Downloader Anti_VM PE File PE32 DLL OS Processor Check ftp PE64 Malware SMB Traffic Potential Scan Malicious Traffic Creates executable files ICMP traffic AppData folder sandbox evasion RCE DNS DDNS
2 4 3 7.0 M ZeroCERT

8227 2024-07-01 11:03 Hooks.jpg.exe  

422f3763021f8f9bfc31a9a7e4b049f9


Generic Malware Malicious Library Admin Tool (Sysinternals etc ...) Downloader Malicious Packer .NET framework(MSIL) UPX Antivirus PE File PE32 DLL OS Processor Check VirusTotal Malware powershell AutoRuns suspicious privilege Malicious Traffic Check memory Checks debugger Creates shortcut Creates executable files unpack itself Windows utilities powershell.exe wrote suspicious process AppData folder Windows ComputerName DNS Cryptographic key
2 18 4 11.2 M 60 ZeroCERT

8228 2024-07-01 11:02 64.jpg.exe  

72762b7ac7c6dfdc7b1c3b3a5171103a


UPX PE File PE64 VirusTotal Malware Check memory unpack itself ComputerName Firmware
3 3.4 M 56 ZeroCERT

8229 2024-07-01 10:46 wmi.jpg.exe  

3d3aedfaeaf39544ff74fe6fe4541fc2


UPX PE File PE32 VirusTotal Malware AutoRuns Check memory Creates executable files RWX flags setting Windows utilities WriteConsoleW Firewall state off Windows
2 6.0 M 60 r0d

8230 2024-07-01 10:25 pconsnap.dll.exe  

8fb5e72a31680189d9a529b49962a0b1


Generic Malware Malicious Library UPX PE File DLL PE64 OS Processor Check VirusTotal Malware
1.0 26 ZeroCERT

8231 2024-07-01 09:42 rise2806.exe  

97768ab0a4837757b74de2ae892badab


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware unpack itself crashed
2.2 M 32 ZeroCERT

8232 2024-07-01 09:40 meta2806.exe  

2fcb3543d06f526e93c7276356f557b7


RedLine stealer Malicious Library .NET framework(MSIL) UPX PE File .NET EXE PE32 OS Processor Check VirusTotal Malware suspicious privilege Check memory Checks debugger unpack itself Windows DNS Cryptographic key
1 4.6 M 36 ZeroCERT

8233 2024-07-01 09:38 vidar2806.exe  

f88272ea7674d3acedd8adcf7643c598


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware unpack itself crashed
2.4 40 ZeroCERT

8234 2024-07-01 09:38 lumma2806.exe  

0309dd0131150796ea99b30a62194fae


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware unpack itself crashed
2.2 38 ZeroCERT

8235 2024-07-01 09:26 1.exe  

07c1efc472c5c8424d6a4e529abc63c5


UPX PE File PE64 OS Processor Check VirusTotal Malware
1.2 16 ZeroCERT