Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
9256 2021-06-24 20:42 mam.exe  

17b10bd28b01f810e415e8fb5ca5bf76


PE File OS Processor Check PE32 FormBook Malware download VirusTotal Malware suspicious privilege Malicious Traffic Checks debugger unpack itself
3 7 1 3.4 52 ZeroCERT

9257 2021-06-24 20:44 clean1.exe  

6192d1233fe0683d14bd980354d8fae9


PE File PE32 VirusTotal Malware Creates executable files Windows utilities WriteConsoleW Windows
3.6 20 ZeroCERT

9258 2021-06-24 20:46 21_Atualizador.GourmetSA.exe  

28db2e73f6e4c8b6106a6826cabe31c7


PE File PE32 VirusTotal Malware Checks debugger unpack itself ComputerName Remote Code Execution crashed
2.6 16 ZeroCERT

9259 2021-06-24 20:48 Update.exe  

95d4eaa382bb065dc3902628ba72f070


PE File OS Processor Check PE32 VirusTotal Malware PDB DNS
1 2.8 36 ZeroCERT

9260 2021-06-24 20:51 rdpclipd.exe  

9356e66f9e704c587c66521fff104ddd


PE File PE32 VirusTotal Malware AutoRuns Malicious Traffic Creates executable files unpack itself Windows DNS
1 3 1 4.6 53 ZeroCERT

9261 2021-06-24 21:50 launcher_packed.img  

ac04a63fbb825a36735b5186cf806c8d


PE File PE32 VirusTotal Malware Malicious Traffic unpack itself WriteConsoleW Ransomware DNS
1347 6 5.6 29 ZeroCERT

9262 2021-06-24 22:56 word.hta  

5562d4b0b0707245170b795a79422da3


Antivirus Escalate priviledges ScreenShot AntiDebug AntiVM PE File DLL PE32 Malware download Malware powershell AutoRuns suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates shortcut Creates executable files unpack itself powershell.exe wrote Check virtual network interfaces suspicious process AppData folder malicious URLs sandbox evasion human activity check Windows ComputerName DNS Cryptographic key Downloader
2 4 5 13.4 ZeroCERT

9263 2021-06-24 22:58 1234.exe  

9615ab661d92bbc4b3fda0fe3739ade7


Generic Malware Antivirus UPX PE File PE64 VirusTotal Malware Check virtual network interfaces DNS
1 3.6 24 ZeroCERT

9264 2021-06-24 22:58 ngrok.exe  

750a876f72adba0240b63f6fa75ac0f8


Generic Malware UPX PE File OS Processor Check PE32 VirusTotal Malware sandbox evasion WriteConsoleW DNS
3.2 1 ZeroCERT

9265 2021-06-24 22:58 lk.exe  

cbbcb18ebc303444c72e1f1a3eed22c6


Generic Malware Malicious Library PE File .NET EXE PE32 VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger unpack itself suspicious process WriteConsoleW Windows DNS Cryptographic key crashed
1 6.6 29 ZeroCERT

9266 2021-06-24 22:59 word.msi  

0646d2be6a1251ea30c78a072b16c8d9


AsyncRAT backdoor PWS .NET framework Generic Malware MSOffice File VirusTotal Malware suspicious privilege Malicious Traffic Check memory Checks debugger unpack itself AntiVM_Disk VM Disk Size Check Tofsee Windows ComputerName DNS
2 7 3 3.8 10 ZeroCERT

9267 2021-06-24 22:59 puttyy.exe  

2afd27e1cdcc42899f921c2f3cae2c04


AsyncRAT backdoor Generic Malware PE File PE64 VirusTotal Malware suspicious privilege MachineGuid Check memory Checks debugger unpack itself Windows Cryptographic key
4.2 31 ZeroCERT

9268 2021-06-24 23:03 UGloryStp.exe  

ad8e408a8a9736bcef58e7ca91ddbbea


Gen1 AsyncRAT backdoor Generic Malware PE File .NET EXE PE32 DLL OS Processor Check Browser Info Stealer FTP Client Info Stealer Malware Cryptocurrency wallets Cryptocurrency AutoRuns suspicious privilege MachineGuid Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates executable files unpack itself Collect installed applications Check virtual network interfaces AppData folder installed browsers check Tofsee Ransomware Windows Browser ComputerName Software crashed
11 6 1 3 11.2 M ZeroCERT

9269 2021-06-24 23:05 NMemo3Setp.exe  

eab3e3f5cf5b04dbb74c7ba2bcdfe146


PWS .NET framework Generic Malware PE File .NET EXE PE32 Malware AutoRuns MachineGuid Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files unpack itself Check virtual network interfaces AppData folder Tofsee Ransomware Windows Cryptographic key
8 4 1 6.6 ZeroCERT

9270 2021-06-24 23:05 QmPy4NYcqBpP9tLDuEBCQbJMeuiaCb...  

899035711854c2009bfd5c0d2f332b62


Gen1 Generic Malware Anti_VM Admin Tool (Sysinternals etc ...) PE File PE64 OS Processor Check DLL VirusTotal Malware Check memory Creates executable files WriteConsoleW DNS
2.6 32 ZeroCERT