Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
8746 2023-09-10 16:55 Update_controller.exe  

0787b3b6049ce57921fa6f32fcc33c67


Malicious Library UPX Malicious Packer PE File PE32 OS Processor Check VirusTotal Malware AutoRuns Check memory unpack itself Windows utilities suspicious process WriteConsoleW Windows ComputerName
3.4 17 ZeroCERT

8747 2023-09-10 16:44 devalzx.doc  

9c104fa0210a291c44d1a4073577a214


MS_RTF_Obfuscation_Objects RTF File doc Malware download VirusTotal Malware exploit crash Windows Exploit DNS crashed
1 1 5 3.4 M 33 ZeroCERT

8748 2023-09-10 09:35 crypt.exe  

4fe88bc5440133565a8e28a78d3bbcbd


Malicious Library UPX ASPack PE File PE64 OS Processor Check VirusTotal Malware MachineGuid Check memory Checks debugger unpack itself Check virtual network interfaces
1 2.6 16 ZeroCERT

8749 2023-09-10 09:32 sufor.exe  

1ba7db783e31bb8c6dc66b5a411a6ec9


Malicious Library UPX AntiDebug AntiVM PE File PE32 OS Processor Check DLL PDB Code Injection Checks debugger Creates executable files unpack itself AppData folder Remote Code Execution
3.8 ZeroCERT

8750 2023-09-10 09:28 0O0O0O0o0O0O0O0o0o0O0o0O0o0O00...  

4b7bd12c2fe37b3bd6da28346180806e


MS_RTF_Obfuscation_Objects RTF File doc VirusTotal Malware VBScript Malicious Traffic RWX flags setting exploit crash Tofsee Exploit DNS crashed
3 4 4 4.2 M 34 ZeroCERT

8751 2023-09-10 09:25 iexpress.exe  

fe5be27304af34b481120a35486df496


PE File PE64 VirusTotal Malware
1.2 M 25 ZeroCERT

8752 2023-09-10 09:25 1iexpress.exe  

8aa84b467d8a13138ba9922b21d75661


.NET framework(MSIL) AntiDebug AntiVM PE File .NET EXE PE32 VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows ComputerName DNS Cryptographic key crashed
1 10.2 M 46 ZeroCERT

8753 2023-09-10 09:24 droidddd.hta  

d1455362f7abf57b64ac83b42e8a354f


Generic Malware Antivirus Hide_URL AntiDebug AntiVM PowerShell MSOffice File VirusTotal Malware powershell suspicious privilege MachineGuid Code Injection Check memory Checks debugger buffers extracted Creates shortcut exploit crash unpack itself Windows utilities powershell.exe wrote Check virtual network interfaces suspicious process WriteConsoleW Tofsee Windows Exploit ComputerName DNS Cryptographic key crashed
3 3 2 11.4 17 ZeroCERT

8754 2023-09-10 09:23 GoogleUpdate.exe  

f5f13d296ccbe05f3b4236e58e130ac3


UPX .NET framework(MSIL) PE File .NET EXE PE32 VirusTotal Malware Check memory Checks debugger unpack itself ComputerName DNS
1 2.8 M 51 ZeroCERT

8755 2023-09-10 09:21 IE_Cache.vbs  

a6113c3b4f3bb50df9586993ae28c5c3


Generic Malware Antivirus Hide_URL PowerShell VirusTotal Malware powershell suspicious privilege Check memory Checks debugger buffers extracted Creates shortcut unpack itself Windows utilities Check virtual network interfaces suspicious process WriteConsoleW Tofsee Windows ComputerName Cryptographic key
3 3 1 8.8 7 guest

8756 2023-09-10 09:21 VCheck.exe  

ad66f35b417643bb5a4840f11d4d7301


Anti_VM PE File PE64 VirusTotal Cryptocurrency Miner Malware CoinMiner
6 1 1.6 M 46 ZeroCERT

8757 2023-09-10 09:21 verify.exe  

73e4f82277d7cb23b3a030e140c50fb2


PE File PE64 VirusTotal Cryptocurrency Miner Malware CoinMiner
6 1 1.6 M 49 ZeroCERT

8758 2023-09-10 09:18 ECheck.exe  

6b6e670cf5ff0d11fafcc2977ce737c9


PE File PE64 VirusTotal Malware
1.6 M 49 ZeroCERT

8759 2023-09-10 09:18 LiveUpdate.exe  

45afd11f072b308766c313e7e569379f


UPX .NET framework(MSIL) PE File .NET EXE PE32 VirusTotal Malware Check memory Checks debugger unpack itself ComputerName
2.2 M 47 ZeroCERT

8760 2023-09-10 09:16 VCheck.exe  

1316cf07327f6a4e976c53959b355f0d


UPX PE File PE64 VirusTotal Malware
1.2 M 46 ZeroCERT