Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
11851 2023-06-30 17:52 TJeAjWEEeH.exe  

d65f5542509366672c1224cc31adfbf0


Generic Malware Malicious Packer Antivirus PE64 PE File VirusTotal Malware powershell suspicious privilege MachineGuid Check memory Checks debugger Creates shortcut Creates executable files unpack itself powershell.exe wrote suspicious process Windows ComputerName Cryptographic key
5.6 M 46 ZeroCERT

11852 2023-06-30 17:50 1500381323.exe  

9ddd093cef3f15d6fd8d5d0ec9e0e014


PE File PE32 Browser Info Stealer VirusTotal Malware Check memory Creates executable files suspicious process WriteConsoleW Browser DNS
1 1 1 4.2 M 46 ZeroCERT

11853 2023-06-30 17:50 build.exe  

2bc310d6ebdae84ce4f495336e996ca7


Malicious Library PE File PE32 VirusTotal Malware PDB unpack itself
2.2 M 51 ZeroCERT

11854 2023-06-30 17:48 f429fjd4uf84u.exe  

aaead1169523638d40ca4d884e3d787a


UPX Malicious Library Malicious Packer OS Processor Check PE File PE32 VirusTotal Malware
2.0 M 54 ZeroCERT

11855 2023-06-30 17:48 fortnite3.exe  

ed0a563d3d57d03356187c1a2fbcce3f


UPX Malicious Library ASPack OS Processor Check PE File PE32 Malware download VirusTotal Malware PDB DNS
1 1 1.4 M 55 ZeroCERT

11856 2023-06-30 17:46 knm.exe  

b0011be8c7cd1c9865e1f1ed406197d4


PE64 PE File VirusTotal Malware PDB MachineGuid Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces Tofsee Windows Cryptographic key crashed
1 3 1 3.8 M 30 ZeroCERT

11857 2023-06-30 17:45 fortnite2.exe  

1eb611dcb30106eec15555718e953cff


Malicious Library Antivirus MZP Format PE File PE32 VirusTotal Malware unpack itself
2.2 M 41 ZeroCERT

11858 2023-06-30 17:43 Server.exe  

56f10385f411be078b84b42560ddea61


njRAT backdoor Generic Malware .NET EXE PE File PE32 VirusTotal Malware Check memory Checks debugger unpack itself WriteConsoleW DNS DDNS
2 1 4.6 62 ZeroCERT

11859 2023-06-30 17:43 LylaSetUp0628.exe  

87440297f51a44bae4caffaaa42c866d


.NET EXE PE File PE32 VirusTotal Malware Buffer PE PDB Check memory Checks debugger buffers extracted unpack itself Remote Code Execution
3.6 M 29 ZeroCERT

11860 2023-06-30 17:41 iccu.exe  

7c52031c4ed1a6922317bf2c668a3308


NSIS UPX Malicious Library PE File PE32 OS Processor Check DLL Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware AutoRuns suspicious privilege Check memory Checks debugger buffers extracted Creates executable files unpack itself Check virtual network interfaces AppData folder IP Check Tofsee Windows Browser Email ComputerName Cryptographic key Software crashed
1 2 1 8.8 M 33 ZeroCERT

11861 2023-06-30 17:41 services.exe  

b19945ffc8f7a693e79c1677aa827750


Admin Tool (Sysinternals etc ...) .NET EXE PE File PE32 VirusTotal Malware AutoRuns PDB MachineGuid Check memory Checks debugger unpack itself Windows
3.0 M 22 ZeroCERT

11862 2023-06-30 14:09 dollzx.doc  

5452ebd4ac62c603d22998055e7534ac


MS_RTF_Obfuscation_Objects RTF File doc Malware download VirusTotal Malware Malicious Traffic exploit crash IP Check Tofsee Windows Gmail Exploit DNS crashed
2 5 7 1 5.0 M 37 ZeroCERT

11863 2023-06-30 13:35 1.bat  

a6d60304c3c87b7ca21aa38c1ed9fb83


LokiBot Gen1 Generic Malware Downloader task schedule UPX Malicious Library Admin Tool (Sysinternals etc ...) Malicious Packer Antivirus Create Service Socket DGA Steal credential Escalate priviledges Code injection HTTP PWS Sniff Audio DNS ScreenShot Htt Malware AutoRuns suspicious privilege Code Injection Malicious Traffic Checks debugger buffers extracted WMI Creates executable files unpack itself Windows utilities Check virtual network interfaces suspicious process WriteConsoleW Windows ComputerName DNS NetSupport
6 5 3 9.6 ZeroCERT

11864 2023-06-30 11:36 Chrome_update.js  

93635d186fe35af3395de954feb2f258

VBScript wscript.exe payload download Tofsee crashed Dropper
1 2 2 10.0 ZeroCERT

11865 2023-06-30 09:46 2111.exe  

175ac1e037521a1d29bffe5abe0d9d92


Raccoon Stealer Gen1 Malicious Library UPX Malicious Packer PE File PE32 OS Processor Check DLL Browser Info Stealer Malware download VirusTotal Malware RecordBreaker MachineGuid Malicious Traffic Check memory Creates executable files Collect installed applications AppData folder installed browsers check Stealer Windows Browser DNS
9 1 11 6.0 M 39 ZeroCERT