Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
9391 2021-06-25 11:39 sL3Ss=  

20a3448258f698062b56672522cfda16


AntiDebug AntiVM MSOffice File Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities Tofsee Windows Exploit DNS crashed
1 1 2 4.2 ZeroCERT

9392 2021-06-25 11:40 Invoice_20180704.doc  

66e3e328db7a696b8969d1486d22894a


VBA_macro Antivirus MSOffice File Vulnerability VirusTotal Malware powershell suspicious privilege Malicious Traffic Check memory Checks debugger Creates shortcut Creates executable files unpack itself powershell.exe wrote Check virtual network interfaces suspicious process WriteConsoleW Tofsee Windows ComputerName DNS Cryptographic key Downloader
2 4 1 10.0 M 46 ZeroCERT

9393 2021-06-25 12:16 launcher_packed.img  

88075dfa232db6eabba969ee67bb83cb


VirusTotal Malware Malicious Traffic unpack itself WriteConsoleW Ransomware DNS
1244 6 1347 5.8 33 ZeroCERT

9394 2021-06-25 13:30 I_139153.js  

239a49edd5b5a6f189fa10dabe67ac70


Malware download VirusTotal Malware VBScript wscript.exe payload download Windows DNS Downloader Dropper
4 5 2 10.0 39 ZeroCERT

9395 2021-06-25 13:31 run.exe  

9741304341cff8ef7af404550c8c50f8


Malicious Packer OS Processor Check PE File PE32 VirusTotal Malware PDB unpack itself Windows Remote Code Execution crashed
3.2 40 ZeroCERT

9396 2021-06-25 13:33 run2.exe  

045d25dd957e03248a0d8de26b5381fd


AsyncRAT backdoor Generic Malware Http API Steal credential ScreenShot AntiDebug AntiVM .NET EXE PE File PE32 VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Tofsee Windows DNS Cryptographic key
2 2 6.6 36 ZeroCERT

9397 2021-06-25 13:33 moe_map.exe  

e0400147067de5edf218ab94927d71a9


PE File PE32 VirusTotal Malware Creates executable files unpack itself Browser
2 3.0 20 ZeroCERT

9398 2021-06-25 13:35 sbd.exe  

5485aa8dca6edb85db42e315026a7f1c


PE File PE32 VirusTotal Malware WriteConsoleW
1.4 47 ZeroCERT

9399 2021-06-25 14:07 msg_19_12_01384462651-72727165...  

861f2ecb29c3bd4ab3e1a13f10422e5d

VirusTotal Malware VBScript wscript.exe payload download DNS Dropper
1 4 10.0 33 ZeroCERT

9400 2021-06-25 14:07 48998.2017-07-31_69.06.43.vbs  

876d628a42f354504873d1a4bdcbdb2a

VirusTotal Malware VBScript buffers extracted wscript.exe payload download Dropper
4 7 10.0 M 37 ZeroCERT

9401 2021-06-25 14:35 vbc.exe  

7fe627a1683ec232399cb09e99995038


OS Processor Check PE32 PE File VirusTotal Malware PDB unpack itself Windows Remote Code Execution crashed
3.6 53 ZeroCERT

9402 2021-06-25 14:37 08018.HOME  

a44a654c5d0f1673322f3ccdaffcaaca


VMProtect ASPack PE32 PE File VirusTotal Malware suspicious privilege unpack itself sandbox evasion Interception Browser Remote Code Execution DNS
1 7.8 42 ZeroCERT

9403 2021-06-25 14:37 BrowzarBrowser_j2.exe  

43cd8230b8e5c132362d91f30341dd26


RAT Generic Malware ScreenShot AntiDebug AntiVM PE32 PE File PNG Format .NET EXE VirusTotal Malware Code Injection Check memory Checks debugger buffers extracted Creates executable files RWX flags setting unpack itself Tofsee Interception DNS crashed
13 10 1 6.6 32 ZeroCERT

9404 2021-06-25 14:38 efvtbnwyjpdv70p.exe  

2f03f812c5df758e332a6978022f0820


RAT PWS .NET framework Generic Malware Malicious Library AntiDebug AntiVM .NET EXE PE32 PE File VirusTotal Malware Buffer PE suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself AppData folder WriteConsoleW anti-virtualization Windows Cryptographic key crashed
11.8 44 ZeroCERT

9405 2021-06-25 14:40 ssetup.exe  

5e8f78570b9610d10fe961dd12e8dba6


Antivirus PE32 PE File PE64 VirusTotal Malware AutoRuns Check memory Creates executable files Windows utilities AppData folder sandbox evasion WriteConsoleW Windows Remote Code Execution DNS
5 1 7.0 35 ZeroCERT