Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
11701 2021-08-24 09:06 pen.exe  

70ed4eb21284e9359cf11d375724f299


PWS .NET framework Generic Malware Admin Tool (Sysinternals etc ...) DNS AntiDebug AntiVM PE File OS Processor Check .NET EXE PE32 VirusTotal Malware Buffer PE suspicious privilege MachineGuid Code Injection Check memory Checks debugger buffers extracted unpack itself Windows utilities suspicious process WriteConsoleW human activity check Windows ComputerName DNS Cryptographic key DDNS crashed
2 1 14.2 M 29 ZeroCERT

11702 2021-08-24 09:08 clip.exe  

92bfafc1e9023665745fee7ef443712e


Generic Malware Admin Tool (Sysinternals etc ...) AntiDebug AntiVM PE File .NET EXE PE32 VirusTotal Malware Code Injection Check memory Checks debugger buffers extracted unpack itself Windows Cryptographic key
7.0 M 46 ZeroCERT

11703 2021-08-24 09:08 220821new.exe  

008608dca212d3f45e4c7fda3cacb663


RAT Generic Malware Themida Packer PE File OS Processor Check .NET EXE PE32 Browser Info Stealer FTP Client Info Stealer VirusTotal Malware suspicious privilege Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Checks Bios Collect installed applications Detects VMWare Check virtual network interfaces VMware anti-virtualization installed browsers check Tofsee Windows Browser ComputerName Firmware DNS Cryptographic key Software crashed
1 3 1 10.6 M 25 ZeroCERT

11704 2021-08-24 09:10 23.exe  

bd07a2728f0a5c4a971125e51830b459


Gen2 RAT Generic Malware UPX Malicious Library Malicious Packer PE File OS Processor Check .NET EXE PE32 VirusTotal Malware suspicious privilege Check memory Checks debugger unpack itself Check virtual network interfaces Windows DNS Cryptographic key
1 4.8 M 26 ZeroCERT

11705 2021-08-24 09:10 Pluton.exe  

89af8d786625c48a71ce9cb93a8d367f


Malicious Library PE File OS Processor Check PE32 VirusTotal Malware PDB unpack itself
1.8 M 25 ZeroCERT

11706 2021-08-24 09:17 yg.exe  

577b5fbdcf47f70f4d17d87cc8a20550


RAT Generic Malware Admin Tool (Sysinternals etc ...) PE File .NET EXE PE32 VirusTotal Malware Check memory Checks debugger unpack itself Windows ComputerName Cryptographic key
2.8 M 34 ZeroCERT

11707 2021-08-24 09:18 deck.exe  

0afb31c3e6018c85df11d2a25a581079


RAT Generic Malware Admin Tool (Sysinternals etc ...) PE File .NET EXE PE32 VirusTotal Malware Check memory Checks debugger unpack itself Windows ComputerName Cryptographic key
3.0 M 47 ZeroCERT

11708 2021-08-24 09:19 sy.exe  

3ca87d704392649bdfd2e0e50c2cca35


PE File PE32 VirusTotal Malware unpack itself
1.6 M 23 ZeroCERT

11709 2021-08-24 09:20 nd.exe  

e249c3cf931a39ce861670aca977b737


PE File PE32 VirusTotal Malware unpack itself
1.6 M 23 ZeroCERT

11710 2021-08-24 09:23 bom-02.exe  

6e33655754e13782626f4b2282a8264d


Generic Malware AntiDebug AntiVM PE File .NET EXE PE32 VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Windows Cryptographic key
9 19 7 9.2 M 24 ZeroCERT

11711 2021-08-24 09:24 BIN.exe  

fdbfac3db38e579f28f6a51e55e7b01b


Generic Malware Admin Tool (Sysinternals etc ...) AntiDebug AntiVM PE File .NET EXE PE32 FormBook Malware download VirusTotal Malware PDB suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Windows utilities suspicious process WriteConsoleW Windows ComputerName Cryptographic key
16 18 1 11.2 M 32 ZeroCERT

11712 2021-08-24 09:24 pals.exe  

1995b0023c950d538750ede62a7c19db


RAT Generic Malware Admin Tool (Sysinternals etc ...) PE File .NET EXE PE32 VirusTotal Malware Check memory Checks debugger unpack itself Windows ComputerName Cryptographic key
3.0 M 44 ZeroCERT

11713 2021-08-24 09:24 joboy.exe  

0fe65d945d9f773bec35a27ce6999a3f


RAT Generic Malware Admin Tool (Sysinternals etc ...) PE File .NET EXE PE32 VirusTotal Malware Check memory Checks debugger unpack itself Windows ComputerName Cryptographic key
2.8 M 37 ZeroCERT

11714 2021-08-24 09:26 jojo.exe  

7de8ca081578b160483afc1f4d84c960


RAT Generic Malware Admin Tool (Sysinternals etc ...) PE File .NET EXE PE32 VirusTotal Malware Check memory Checks debugger unpack itself Windows ComputerName Cryptographic key
3.0 M 45 ZeroCERT

11715 2021-08-24 09:27 Windows.exe  

a6b0c68d5870d0962b905eb433ab1cb7


RAT PWS .NET framework Generic Malware Antivirus AntiDebug AntiVM PE File .NET EXE PE32 VirusTotal Malware powershell suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut unpack itself Windows utilities powershell.exe wrote suspicious process WriteConsoleW Windows ComputerName Cryptographic key
11.0 M 26 ZeroCERT