Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
10771 2023-08-12 18:54 file.exe  

d5fbc84f128e2f19c3ec80b201475c3a


UPX Malicious Library OS Processor Check PE File PE32 VirusTotal Malware PDB Remote Code Execution
2.2 M 32 ZeroCERT

10772 2023-08-12 18:52 cred64.dll  

18cd6fceb5601ba45c40b33d28a87f92


Browser Login Data Stealer UPX Malicious Library OS Processor Check DLL PE64 PE File VirusTotal Malware PDB Checks debugger installed browsers check Browser ComputerName crashed
2.4 M 43 ZeroCERT

10773 2023-08-12 18:52 file.exe  

3d6110a0f3f8ae7db70afe657b2e9369


UPX Malicious Library OS Processor Check PE File PE32 VirusTotal Malware PDB Remote Code Execution
2.2 M 35 ZeroCERT

10774 2023-08-12 18:42 bld-upd-stbl.lnk  

9490cee7073ee4f47dcb8caadfc1817d


Generic Malware Antivirus AntiDebug AntiVM GIF Format VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger Creates shortcut unpack itself powershell.exe wrote suspicious process WriteConsoleW Windows ComputerName Cryptographic key
1 4.8 13 ZeroCERT

10775 2023-08-12 03:56 xtra2.bin  

16713dab9cec1cc8a968a8b643baac45


AntiDebug AntiVM Email Client Info Stealer suspicious privilege Checks debugger Creates shortcut unpack itself installed browsers check Browser Email ComputerName
3.4 guest

10776 2023-08-12 03:04 0000000000000017.tracev3.txt  

c0b23a47c777c2f340a1e22bb9df7e19


ScreenShot AntiDebug AntiVM OS Processor Check Check memory unpack itself
1.0 guest

10777 2023-08-12 02:44 000000000000001a.tracev3  

d6e6f7f7c389965a7d2d2bdbcf206332


AntiDebug AntiVM Email Client Info Stealer suspicious privilege Checks debugger Creates shortcut unpack itself installed browsers check Browser Email ComputerName
3.4 guest

10778 2023-08-12 02:37 0000000000000002.tracev3.txt  

85e18c9584838a965fedc24eab609846


ScreenShot AntiDebug AntiVM Check memory unpack itself
1.0 guest

10779 2023-08-11 18:13 func.bat  

da7822df51eba2ea7064742927ddd694


Generic Malware Downloader Antivirus Create Service Socket P2P DGA Steal credential Http API Escalate priviledges PWS Sniff Audio HTTP DNS ScreenShot Code injection Internet API FTP KeyLogger AntiDebug AntiVM PowerShell GIF Format powershell AutoRuns suspicious privilege Code Injection Check memory Checks debugger Creates shortcut Creates executable files unpack itself Windows utilities powershell.exe wrote suspicious process WriteConsoleW Windows ComputerName Cryptographic key
2 6.0 ZeroCERT

10780 2023-08-11 18:13 payment.exe  

92aa574a8a1578c2200b62c900dba91e


Malicious Packer PE File PE32 VirusTotal Malware unpack itself DNS
1 3.6 M 60 ZeroCERT

10781 2023-08-11 18:11 gucc.exe  

92dcd8b39dc0831b697f4e8cae32c4f8


Admin Tool (Sysinternals etc ...) .NET EXE PE File PE32 VirusTotal Malware PDB Check memory Checks debugger unpack itself Windows Cryptographic key crashed
3.0 M 41 ZeroCERT

10782 2023-08-11 18:09 func.bat  

da7822df51eba2ea7064742927ddd694


Generic Malware Downloader Antivirus Create Service Socket P2P DGA Steal credential Http API Escalate priviledges PWS Sniff Audio HTTP DNS ScreenShot Code injection Internet API FTP KeyLogger AntiDebug AntiVM PowerShell GIF Format powershell AutoRuns suspicious privilege Code Injection Check memory Checks debugger Creates shortcut Creates executable files unpack itself Windows utilities powershell.exe wrote suspicious process WriteConsoleW Windows ComputerName Cryptographic key
2 6.0 ZeroCERT

10783 2023-08-11 17:47 Mac_App.exe  

4b29c67a00bcda2f4e861fd036b7dd2d

VirusTotal Malware crashed
1.2 M 18 ZeroCERT

10784 2023-08-11 17:38 svrdiv vsnivd.exe  

5323834444ae9db2d971ac08cdf579e7


.NET framework(MSIL) .NET EXE PE File PE32 VirusTotal Malware PDB MachineGuid Check memory Checks debugger unpack itself ComputerName
2.6 20 ZeroCERT

10785 2023-08-11 17:29 Pooja.xlam  

f942baab036075e8ace437ccf96815a7


VBA_macro Generic Malware .NET framework(MSIL) ZIP Format JPEG Format MSOffice File .NET EXE PE File PE32 VirusTotal Malware Check memory Checks debugger exploit crash unpack itself Exploit ComputerName crashed
4.2 18 ZeroCERT