Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
9826 2021-07-09 09:30 file.exe  

9e2521860ebdce53dbe422612566d4ea


Raccoon Stealer Malicious Library PE32 OS Processor Check PE File VirusTotal Malware PDB unpack itself Windows Remote Code Execution crashed
3.0 31 ZeroCERT

9827 2021-07-09 09:30 document.wbk  

562d429223703b6f8edfe68bcbf76ff5


RTF File doc AntiDebug AntiVM VirusTotal Malware MachineGuid Malicious Traffic Check memory Checks debugger exploit crash unpack itself Exploit DNS crashed
2 3 5.6 30 ZeroCERT

9828 2021-07-09 09:36 crv.dll  

3ddeea156606b2e5d19c86cedf3dec30


Generic Malware PE64 DLL PE File VirusTotal Malware MachineGuid Malicious Traffic Check memory Checks debugger buffers extracted ICMP traffic unpack itself
2 4 1 4.4 M 30 ZeroCERT

9829 2021-07-09 09:52 ChromeSetup.exe  

8b8070d443edc2583af45f5e831612ae


RAT Generic Malware SMTP KeyLogger PDF AntiDebug AntiVM .NET EXE PE32 PE File Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware AutoRuns suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces malicious URLs IP Check Windows Browser Email ComputerName DNS Cryptographic key DDNS Software crashed keylogger
2 4 14.4 19 ZeroCERT

9830 2021-07-09 09:54 Avi.exe  

73831e1d30a74a49e0d5c5e8702fccd8


PWS .NET framework RAT Generic Malware Admin Tool (Sysinternals etc ...) .NET EXE PE32 PE File VirusTotal Malware PDB Check memory Checks debugger unpack itself
1.6 18 ZeroCERT

9831 2021-07-09 09:58 79.exe  

731200bd0f325601f10165da3acd050c


PE32 PE File VirusTotal Malware AutoRuns unpack itself Auto service Check virtual network interfaces sandbox evasion Windows DNS
1 4.8 22 ZeroCERT

9832 2021-07-09 09:58 conhosts.exe  

caef2cf45e5f00b554a5847de4096408


RAT Gen2 Emotet Gen1 PWS .NET framework Generic Malware NSIS Admin Tool (Sysinternals etc ...) Anti_VM UPX KeyLogger ScreenShot PDF AntiDebug AntiVM .NET EXE PE32 PE File OS Processor Check VirusTotal Malware AutoRuns suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself AppData folder malicious URLs installed browsers check Windows Browser Cryptographic key crashed
10.0 23 ZeroCERT

9833 2021-07-09 09:59 lv.exe  

036bee46548f543c263666d864125a60


NPKI Ficker Stealer Gen1 Gen2 Malicious Library UPX PE32 PE File DLL OS Processor Check VirusTotal Malware Code Injection Check memory Checks debugger Creates executable files unpack itself Windows utilities suspicious process AppData folder AntiVM_Disk WriteConsoleW VM Disk Size Check Windows DNS
2 6.8 31 ZeroCERT

9834 2021-07-09 10:00 search.exe  

5662b035afe1d5d0673378cae8c3a963


Raccoon Stealer Malicious Library PE32 OS Processor Check PE File PDB unpack itself Windows Remote Code Execution crashed
2.0 ZeroCERT

9835 2021-07-09 10:01 08.jpg  

ed1921467f6784af6bdca40a06a541b5


DNS Socket ScreenShot AntiDebug AntiVM PE32 OS Processor Check PE File Browser Info Stealer FTP Client Info Stealer VirusTotal Malware Cryptocurrency wallets Cryptocurrency Buffer PE PDB MachineGuid Code Injection Malicious Traffic Check memory buffers extracted ICMP traffic unpack itself Collect installed applications Check virtual network interfaces suspicious process suspicious TLD sandbox evasion anti-virtualization IP Check installed browsers check Ransomware Browser ComputerName Software
4 8 16.4 20 ZeroCERT

9836 2021-07-09 10:01 microF.exe  

edaf5a29b05f9205678bf6df8417541c


PWS .NET framework RAT Generic Malware Malicious Packer SMTP KeyLogger AntiDebug AntiVM .NET EXE PE32 PE File Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities Check virtual network interfaces suspicious process AppData folder WriteConsoleW IP Check Windows Browser Email ComputerName DNS Cryptographic key DDNS Software crashed keylogger
2 4 15.8 18 ZeroCERT

9837 2021-07-09 10:02 lv.exe  

1a784d7b62002cba21a58bdaaa93ab5f


Raccoon Stealer Gen1 Gen2 Malicious Library PE32 PE File OS Processor Check DLL VirusTotal Malware Check memory Creates executable files unpack itself AppData folder Windows crashed
3.6 43 ZeroCERT

9838 2021-07-09 10:06 91.exe  

25bb9a2a3c1135afc92346448cf84955


PE32 PE File VirusTotal Malware AutoRuns ICMP traffic unpack itself Auto service Check virtual network interfaces sandbox evasion Windows DNS
1 5.6 22 ZeroCERT

9839 2021-07-09 10:06 index.jar  

a53c10a1311d5e77559b0d3a23e24488

VirusTotal Malware Check memory heapspray unpack itself Java
2.0 9 ZeroCERT

9840 2021-07-09 10:06 vbc.exe  

082d045207256efb0f058cccfab15329


Generic Malware Admin Tool (Sysinternals etc ...) .NET EXE PE32 PE File VirusTotal Malware Check memory Checks debugger unpack itself crashed
2.2 28 ZeroCERT