Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
11431 2021-08-18 11:03 anthonyzx.exe  

2c47f030311ad86019602b0da8298332


RAT PWS .NET framework Generic Malware Admin Tool (Sysinternals etc ...) SMTP KeyLogger AntiDebug AntiVM PE File .NET EXE PE32 VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows ComputerName Cryptographic key crashed
9.2 M 32 ZeroCERT

11432 2021-08-18 11:06 fdseventeen.exe  

5c978476aaf6e02c5cd840da6b550bb6


PWS Loki[b] Loki.m RAT .NET framework Generic Malware Admin Tool (Sysinternals etc ...) DNS Socket AntiDebug AntiVM PE File .NET EXE PE32 Browser Info Stealer LokiBot Malware download FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware c&c suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself malicious URLs installed browsers check Windows Browser Email ComputerName Cryptographic key Software
1 2 7 13.2 M 42 ZeroCERT

11433 2021-08-18 11:07 vbc.exe  

24de92095889ef49c35dcc6f687627e5


RAT PWS .NET framework Generic Malware Admin Tool (Sysinternals etc ...) SMTP KeyLogger AntiDebug AntiVM PE File .NET EXE PE32 Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces Tofsee Windows Browser Email ComputerName Cryptographic key Software crashed
1 2 1 12.0 M 27 ZeroCERT

11434 2021-08-18 11:19 rcd.exe  

679b38d3297913cec51412919546f0fc


RAT PWS .NET framework Generic Malware UPX PE File OS Processor Check .NET EXE PE32 Browser Info Stealer FTP Client Info Stealer VirusTotal Malware suspicious privilege Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Collect installed applications Check virtual network interfaces installed browsers check Tofsee Windows Browser ComputerName DNS Cryptographic key Software crashed
2 3 2 7.4 M 43 ZeroCERT

11435 2021-08-18 11:20 cd13.exe  

af366ca287f4fff65e730d609d3f6bd2


RAT PWS .NET framework Generic Malware UPX PE File OS Processor Check .NET EXE PE32 Browser Info Stealer FTP Client Info Stealer Malware suspicious privilege Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Collect installed applications Check virtual network interfaces installed browsers check Tofsee Windows Browser ComputerName DNS Cryptographic key Software crashed
2 3 2 6.2 M ZeroCERT

11436 2021-08-18 11:20 JABKA9983.exe  

2093d467e65e9dbad2a55577d9f8d396


RAT PWS .NET framework Generic Malware UPX Malicious Library VMProtect PE File OS Processor Check .NET EXE PE32 DLL Browser Info Stealer FTP Client Info Stealer VirusTotal Malware AutoRuns suspicious privilege Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files ICMP traffic unpack itself Windows utilities Collect installed applications Check virtual network interfaces suspicious process AppData folder suspicious TLD installed browsers check Tofsee Windows Browser ComputerName DNS Cryptographic key Software crashed
3 5 4 11.6 M 48 ZeroCERT

11437 2021-08-18 11:22 arinzezx.exe  

35f1d0f2f60b193c004a81b219c0dcc7


RAT PWS .NET framework Generic Malware Admin Tool (Sysinternals etc ...) SMTP KeyLogger AntiDebug AntiVM PE File .NET EXE PE32 Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces IP Check Tofsee Windows Browser Email ComputerName DNS Cryptographic key DDNS Software crashed
2 4 4 12.8 M 35 ZeroCERT

11438 2021-08-18 11:22 tzd.exe  

fb4b33133ac61d537322520e6aacdf44


RAT Generic Malware Admin Tool (Sysinternals etc ...) PE File .NET EXE PE32 VirusTotal Malware Check memory Checks debugger unpack itself Windows ComputerName Cryptographic key
2.8 M 39 ZeroCERT

11439 2021-08-18 11:24 kbinzx.exe  

3038c63be8eb4248dcb08e75fa8da3c1


RAT PWS .NET framework Generic Malware Admin Tool (Sysinternals etc ...) SMTP KeyLogger AntiDebug AntiVM PE File .NET EXE PE32 VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows ComputerName DNS Cryptographic key crashed
1 11.0 M 42 ZeroCERT

11440 2021-08-18 11:25 ashleyzx.exe  

c36a8f55e7338503e15ef4d91bb39eff


RAT PWS .NET framework Generic Malware Admin Tool (Sysinternals etc ...) AntiDebug AntiVM PE File .NET EXE PE32 FormBook Malware download VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted ICMP traffic unpack itself Windows utilities AppData folder Windows Cryptographic key
7 15 1 3 11.2 M 23 ZeroCERT

11441 2021-08-18 11:26 osamazx.exe  

c0fc593778f04e09b617854121aaca04


RAT PWS .NET framework Generic Malware Admin Tool (Sysinternals etc ...) SMTP KeyLogger AntiDebug AntiVM PE File .NET EXE PE32 VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows ComputerName Cryptographic key crashed
9.4 M 40 ZeroCERT

11442 2021-08-18 11:26 BIN.exe  

2b26fb332ceca5db7983d7734d26db2d


RAT Generic Malware Admin Tool (Sysinternals etc ...) PE File .NET EXE PE32 VirusTotal Malware Check memory Checks debugger unpack itself Windows ComputerName Cryptographic key
2.8 M 39 ZeroCERT

11443 2021-08-18 11:28 hot.exe  

5fcbfeae2b818e9eab95723a87460401


UPX Malicious Library PE File OS Processor Check PE32 FormBook Malware download VirusTotal Malware PDB suspicious privilege Malicious Traffic unpack itself DNS
3 7 1 3.8 M 32 ZeroCERT

11444 2021-08-18 11:29 test.exe  

aba88ae23ef00a022dd6a09105b5a740


RAT Generic Malware UPX Malicious Packer PE File OS Processor Check .NET EXE PE32 VirusTotal Malware MachineGuid Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces AntiVM_Disk IP Check VM Disk Size Check Tofsee Windows ComputerName DNS Cryptographic key crashed
3 3 3 5.8 M 48 ZeroCERT

11445 2021-08-18 11:31 obinnazx.exe  

a3ab9dcf6e3ba0e1f026fcf4b18065a0


RAT PWS .NET framework Generic Malware Admin Tool (Sysinternals etc ...) AntiDebug AntiVM PE File .NET EXE PE32 FormBook Malware download VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Windows Cryptographic key
3 6 1 8.2 M 26 ZeroCERT