Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
9556 2023-08-11 04:41 rev 0B744B7667EF335CB32CEA7A9E...  

d355dd22f9d71b1b9bce9b03771c7f26


RedLine stealer Generic Malware Malicious Library Admin Tool (Sysinternals etc ...) Anti_VM OS Processor Check crashed
0.2 guest

9557 2023-08-11 04:02 rev 0B744B7667EF335CB32CEA7A9E...  

d355dd22f9d71b1b9bce9b03771c7f26


RedLine stealer Generic Malware Malicious Library Admin Tool (Sysinternals etc ...) Anti_VM OS Processor Check
guest

9558 2023-08-11 00:39 test.jar  

734974d295357d98dc56ecc8b45ba6a6


OS Processor Check ZIP Format Check memory heapspray unpack itself Java
1.6 guest

9559 2023-08-10 16:40 159.exe  

fbc04c52eb18b7db7206ef8cd0bbc1ab


UPX Malicious Library ScreenShot AntiDebug AntiVM OS Processor Check PE File PE32 VirusTotal Malware Buffer PE PDB Code Injection buffers extracted WMI RWX flags setting unpack itself ComputerName DNS crashed
1 9.8 46 ZeroCERT

9560 2023-08-10 16:40 158.exe  

55cf389c5f0d6cd71d2f8e4052849e05


UPX Malicious Library OS Processor Check PE File PE32 VirusTotal Malware PDB
2.0 35 ZeroCERT

9561 2023-08-10 13:53 File_pass1234.7z  

c9438bf4446a3b0c4ffe21bf7ffa0e49


Escalate priviledges PWS KeyLogger AntiDebug AntiVM Malware suspicious privilege Malicious Traffic Check memory Checks debugger Creates executable files unpack itself suspicious TLD IP Check DNS
26 66 16 6.6 M ZeroCERT

9562 2023-08-10 13:34 putty.exe  

406705c7bfb385b0b4646ba2661c6532


Gen1 Generic Malware UPX Malicious Library Antivirus OS Processor Check PE File PE32 VirusTotal Malware powershell PDB suspicious privilege Check memory Checks debugger Creates shortcut unpack itself powershell.exe wrote suspicious process Windows ComputerName Remote Code Execution Cryptographic key
4.8 25 ZeroCERT

9563 2023-08-10 13:25 kwen.vbs  

65f0061e67f326e70fae0ca85d8e6310


Generic Malware Antivirus PowerShell VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Windows utilities suspicious process WriteConsoleW Windows ComputerName Cryptographic key
5.8 10 ZeroCERT

9564 2023-08-10 10:02 independence.hta  

a9d1dd12cb4c7c485f4966ca9963106f


Generic Malware Antivirus AntiDebug AntiVM PowerShell MSOffice File VirusTotal Malware powershell suspicious privilege MachineGuid Code Injection Check memory Checks debugger Creates shortcut exploit crash unpack itself Windows utilities powershell.exe wrote suspicious process WriteConsoleW Windows Exploit ComputerName DNS Cryptographic key crashed
9.2 19 ZeroCERT

9565 2023-08-10 09:58 ss.txt.vbs  

d7e90b3e0face4bb9956ab6cd048a102


Generic Malware Antivirus PowerShell VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Check virtual network interfaces suspicious process WriteConsoleW Windows ComputerName Cryptographic key
1 2 7.2 12 ZeroCERT

9566 2023-08-10 09:57 abyx.vbs  

46a7b18113420f49e036d444c40b997a


Generic Malware Antivirus PowerShell VirusTotal Malware suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Windows utilities suspicious process WriteConsoleW Windows ComputerName Cryptographic key
5.8 M 17 ZeroCERT

9567 2023-08-10 09:55 mbio.vbs  

8e88d1c5e3170b1bd22c1d51010058ea


Generic Malware Antivirus PowerShell VirusTotal Malware suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Windows utilities suspicious process WriteConsoleW Windows ComputerName Cryptographic key
5.6 M 7 ZeroCERT

9568 2023-08-10 09:52 JHB.vbs  

0552b09a1759b110004f0751b9199b7a


Generic Malware Antivirus PowerShell VirusTotal Malware suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Windows utilities suspicious process WriteConsoleW Windows ComputerName Cryptographic key
5.8 M 18 ZeroCERT

9569 2023-08-10 09:50 bdolsx.vbs  

34704256746b33be023ac29363bbf9cd


Generic Malware Antivirus PowerShell VirusTotal Malware suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Windows utilities suspicious process WriteConsoleW Windows ComputerName Cryptographic key
5.8 M 17 ZeroCERT

9570 2023-08-10 09:50 PAXDETAILSpdf.bat  

049b06708b6a9efcbab1cc5c7aba7b3a


Generic Malware Downloader Antivirus Create Service Socket P2P DGA Steal credential Http API Escalate priviledges PWS Sniff Audio HTTP DNS ScreenShot Code injection Internet API FTP KeyLogger AntiDebug AntiVM VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself powershell.exe wrote Check virtual network interfaces suspicious process WriteConsoleW Windows ComputerName Cryptographic key
1 2 6.4 1 ZeroCERT