Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
10366 2023-07-12 17:30 HHH1.exe  

6f665047f3ccce8c93bdd5eead1318de


Generic Malware UPX Antivirus AntiDebug AntiVM PE64 PE File OS Processor Check VirusTotal Malware Buffer PE suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Windows utilities Auto service Check virtual network interfaces malicious URLs Tofsee Windows Cryptographic key
1 2 1 9.6 M 24 ZeroCERT

10367 2023-07-12 17:25 cred64.dll  

60cf7bdab887c8e4d3425d94ececd8d0


Browser Login Data Stealer UPX Malicious Library OS Processor Check DLL PE64 PE File VirusTotal Malware PDB Checks debugger unpack itself installed browsers check Browser ComputerName crashed
2.8 M 40 ZeroCERT

10368 2023-07-12 17:25 Setup122.exe  

bcfac13ce46c95646e1d922d4a8493cf


UPX PE64 PE File VirusTotal Malware Check memory Checks debugger unpack itself Windows Cryptographic key
1.8 M 29 ZeroCERT

10369 2023-07-12 15:18 xmrig.exe  

4813fa6d610e180b097eae0ce636d2aa


Generic Malware UPX Malicious Library Malicious Packer OS Processor Check PE64 PE File VirusTotal Malware unpack itself ComputerName
1.8 M 51 ZeroCERT

10370 2023-07-12 15:15 templezx.exe  

9c66f681dd4f45e909bb6cec6fa8e20f


AgentTesla PWS KeyLogger AntiDebug AntiVM .NET EXE PE File PE32 Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware AutoRuns PDB suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces IP Check Tofsee Windows Browser Email ComputerName Cryptographic key Software crashed keylogger
2 2 13.2 M 28 ZeroCERT

10371 2023-07-12 14:50 pablozx.doc  

6bad9606e870b69823f32c9255c194c4


Loki MS_RTF_Obfuscation_Objects RTF File doc LokiBot Malware download VirusTotal Malware c&c Malicious Traffic exploit crash Windows Exploit DNS crashed
2 2 12 1 4.6 M 35 ZeroCERT

10372 2023-07-12 14:01 templezx.doc  

96908698ef1a19e7b6c4cc2f52637d3b


MS_RTF_Obfuscation_Objects RTF File doc Malware download VirusTotal Malware Telegram Malicious Traffic exploit crash IP Check Tofsee Windows Exploit DNS crashed
1 5 9 4.6 M 33 ZeroCERT

10373 2023-07-12 10:10 Financial_Budget2023.js  

9b5b8fd2b485387fb5e16a6a714ff3c6

Malware download Wshrat NetWireRC VirusTotal Malware VBScript AutoRuns WMI wscript.exe payload download Creates executable files unpack itself AntiVM_Disk VM Disk Size Check Windows Houdini ComputerName DNS Dropper
1 3 2 10.0 9 ZeroCERT

10374 2023-07-12 09:37 new64.dll  

9872f989cd453187ec12ffd4744be0db


Malicious Library DLL PE64 PE File VirusTotal Malware Checks debugger buffers extracted unpack itself Remote Code Execution DNS
3 7 3.4 M 18 ZeroCERT

10375 2023-07-12 09:30 schtasks.exe  

a0bcd3b7d2ab3ff1beb3ee7d87e736d0


AsyncRAT UPX .NET framework(MSIL) Malicious Packer OS Processor Check .NET EXE PE File PE32
2 ZeroCERT

10376 2023-07-12 08:15 schtasks.exe  

25eb3575a5fdaefcf6f3b5c1d91c262d


AsyncRAT UPX .NET framework(MSIL) Malicious Packer OS Processor Check .NET EXE PE File PE32
2 ZeroCERT

10377 2023-07-12 08:14 schtasks.exe  

24cd86ecb2c7e499e830f681f6308f41


AsyncRAT UPX .NET framework(MSIL) Malicious Packer OS Processor Check .NET EXE PE File PE32
2 ZeroCERT

10378 2023-07-12 08:08 wqzwqzwqzwqzwqzwqzwqzwqzwqz%23...  

de36330f5ecc55cc90226af3db4a8992


MS_RTF_Obfuscation_Objects RTF File doc Vulnerability VirusTotal Malware Malicious Traffic buffers extracted exploit crash unpack itself Exploit DNS crashed
1 1 3 4.6 33 ZeroCERT

10379 2023-07-12 08:07 notice_11_jul_7701757.js  

5dc5797adb91fb7c0609d3d6a7b7184a

WMI ComputerName
1.0 ZeroCERT

10380 2023-07-12 07:51 20AC0B78.Png  

bd461f69d8fc3e476a4c4a03080ca481


Malicious Library CAB MSOffice File VirusTotal Malware
1.0 39 ZeroCERT