Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
9421 2024-06-01 08:51 victor.exe  

01cff6fb725465d86284505028b42cfd


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware unpack itself crashed
2.4 57 ZeroCERT

9422 2024-06-01 08:51 RambledMime.exe  

8ccd94001051879d7b36b46a8c056e99


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware unpack itself crashed
2.4 52 ZeroCERT

9423 2024-06-01 08:33 New.exe  

c6ea25255fd7c184d6dfb684ac82e351


Generic Malware task schedule Malicious Library Antivirus KeyLogger AntiDebug AntiVM PE64 PE File Malware download AsyncRAT NetWireRC VirusTotal Malware powershell Buffer PE suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut unpack itself suspicious process WriteConsoleW Windows ComputerName Cryptographic key crashed
2 2 10.4 M 44 ZeroCERT

9424 2024-06-01 08:32 CapSimple.exe  

d86ff3c02aefcd74ece7eb45ee226806


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware unpack itself crashed
2.4 M 50 ZeroCERT

9425 2024-06-01 08:31 smartsoftsignew.exe  

66a5a529386533e25316942993772042


Emotet Generic Malware Malicious Library UPX Antivirus AntiDebug AntiVM PE File PE32 PowerShell DLL MSOffice File VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut Creates executable files RWX flags setting exploit crash unpack itself Windows utilities suspicious process AppData folder Tofsee Windows Exploit ComputerName DNS Cryptographic key crashed
2 2 3 9.6 14 ZeroCERT

9426 2024-06-01 08:31 setup.exe  

89052e2c020f8f6f5287e10d134f0bd1


Generic Malware Malicious Library Antivirus AntiDebug AntiVM PE File PE32 PowerShell VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger WMI Creates shortcut Creates executable files RWX flags setting unpack itself Windows utilities Disables Windows Security Checks Bios powershell.exe wrote suspicious process WriteConsoleW anti-virtualization Windows ComputerName Cryptographic key
12.0 36 ZeroCERT

9427 2024-05-31 22:58 Roland VersaWorks Dual.msi  

6be37bd461f512d0aee5d9551fdfb7b3


Gen1 Emotet Generic Malware Malicious Library ASPack Malicious Packer UPX ScreenShot Anti_VM AntiDebug AntiVM MSOffice File DllRegisterServer dll ftp CAB OS Processor Check PE64 PE File DLL PE32 VirusTotal Malware AutoRuns suspicious privilege MachineGuid Code Injection Check memory Checks debugger Creates shortcut Creates executable files unpack itself Windows utilities Auto service AppData folder AntiVM_Disk Firewall state off VM Disk Size Check Windows ComputerName Trojan
8.6 3 guest

9428 2024-05-31 10:30 dl.php  

983a597328f06950181c7ede2c4b474d


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware unpack itself
2.4 M 40 ZeroCERT

9429 2024-05-31 10:28 gps_1688.exe  

c2c6ca7a9dea1fc9708b57d3ae1d9bc7


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware PDB Check memory RWX flags setting
1.8 M 7 ZeroCERT

9430 2024-05-31 10:25 NimDllLoader.exe  

8960bb93e3796d6fdd8d637d54bc2d24


UPX PE64 PE File VirusTotal Malware Check memory
0.8 M 15 ZeroCERT

9431 2024-05-31 10:23 entryofkingboraisreallygreatan...  

754bde2b5da33419817a557609fa13c0


MS_RTF_Obfuscation_Objects RTF File doc VirusTotal Malware Malicious Traffic RWX flags setting exploit crash Tofsee Exploit DNS crashed
3 6 2 4.2 M 32 ZeroCERT

9432 2024-05-31 10:21 random.exe  

85d6cf6654492780b26bb9ed64ae24ab


UPX PE File PE32 Malware download VirusTotal Malware AutoRuns MachineGuid Checks debugger unpack itself Windows utilities Checks Bios Detects VMWare suspicious process WriteConsoleW VMware anti-virtualization IP Check Tofsee Windows RisePro ComputerName DNS crashed
2 7 5 10.8 M 41 ZeroCERT

9433 2024-05-31 10:19 33333.exe  

208bd37e8ead92ed1b933239fb3c7079


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware PDB unpack itself crashed
2.4 M 38 ZeroCERT

9434 2024-05-31 10:17 A.I_1003H.exe  

3d5fa6d9aa8cf0087e59296463598c2e


Gen1 PWS/Dexter Emotet Generic Malware PhysicalDrive Malicious Library UPX Malicious Packer Admin Tool (Sysinternals etc ...) Antivirus Anti_VM PE File PE32 DLL OS Processor Check PE64 DllRegisterServer dll MSOffice File MZP Format CAB VirusTotal Malware PDB suspicious privilege Check memory Creates executable files unpack itself Windows utilities AppData folder WriteConsoleW Ransomware Windows ComputerName
7.0 M 54 ZeroCERT

9435 2024-05-31 10:17 reverse_tcp_uuid.hta  

b177937631436154e4bbf6f577e127ed


Generic Malware Antivirus PowerShell VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut RWX flags setting unpack itself suspicious process Windows ComputerName DNS Cryptographic key
1 7.4 M 37 ZeroCERT