Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
12001 2021-09-02 11:16 wget.exe  

a445cf765b601d2a815968b623823088


Malicious Library PE File PE64 VirusTotal Malware
1.2 M 7 ZeroCERT

12002 2021-09-02 11:16 GrooveIntlResource.dll  

9a957cda47081d256f671351bcb7e80a


Malicious Library Malicious Packer PE File DLL PE32 VirusTotal Malware unpack itself Windows crashed
2.4 M 21 ZeroCERT

12003 2021-09-02 11:19 FXSROUTE.dll  

eeb071b80bc217fe5f62c108eff8e5e0


Malicious Library Malicious Packer PE File DLL PE32 VirusTotal Malware unpack itself Windows crashed
2.2 M 17 ZeroCERT

12004 2021-09-02 11:19 dmdskmgr.dll  

25fa610acccab59f7ff0b986a1491a6c


Malicious Library Malicious Packer PE File DLL PE32 VirusTotal Malware unpack itself Windows crashed
2.2 M 18 ZeroCERT

12005 2021-09-02 11:20 nlaapi.dll  

61bac0f59292317584171af9d1104071


Malicious Library Malicious Packer PE File DLL PE32 VirusTotal Malware unpack itself Windows crashed
2.2 M 17 ZeroCERT

12006 2021-09-02 17:34 vbc.exe  

aff88e15a1cc7ba0db8d1052a7cb6a19


PWS .NET framework Generic Malware Malicious Library AntiDebug AntiVM PE File .NET EXE PE32 suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows Cryptographic key
6.2 ZeroCERT

12007 2021-09-02 17:34 1842760535.exe  

eceafb76182d6e9f4c91e7aeeaa9d3e8


RAT Generic Malware UPX PE File .NET EXE PE32 VirusTotal Malware PDB Check memory Checks debugger unpack itself Check virtual network interfaces ComputerName
1 1 2.8 M 46 ZeroCERT

12008 2021-09-02 17:37 eth.exe  

5c28e053a7702cad262eb0ad5363d6c0


RAT Generic Malware Malicious Packer Antivirus PE File PE64 VirusTotal Malware powershell AutoRuns suspicious privilege MachineGuid Check memory Checks debugger Creates shortcut Creates executable files unpack itself Windows utilities powershell.exe wrote suspicious process WriteConsoleW Windows ComputerName Cryptographic key
8.0 M 40 ZeroCERT

12009 2021-09-02 17:37 rvn.exe  

e7a9fd8fe16de7cb4175a4e098362fcd


RAT Generic Malware Malicious Packer Antivirus PE File PE64 VirusTotal Malware powershell AutoRuns suspicious privilege MachineGuid Check memory Checks debugger Creates shortcut Creates executable files unpack itself Windows utilities powershell.exe wrote suspicious process WriteConsoleW Windows ComputerName Cryptographic key
7.2 M 36 ZeroCERT

12010 2021-09-02 17:39 luZKPx3kUqLTaYk.exe  

a3b8eeb73bb8f4bc00f1ad2a75c15ae3


PWS .NET framework Generic Malware Malicious Library SMTP KeyLogger AntiDebug AntiVM PE File .NET EXE PE32 VirusTotal Malware AutoRuns suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows utilities suspicious process WriteConsoleW Windows ComputerName Cryptographic key crashed
11.4 15 ZeroCERT

12011 2021-09-02 17:39 WIN32.exe  

06caa44baa0dcf54689fd14dc3d92203


RAT PWS .NET framework email stealer Generic Malware Antivirus DNS Escalate priviledges KeyLogger Code injection Downloader persistence AntiDebug AntiVM PE File .NET EXE PE32 VirusTotal Malware powershell Buffer PE AutoRuns suspicious privilege Code Injection Check memory Checks debugger buffers extracted WMI Creates shortcut ICMP traffic unpack itself Windows utilities powershell.exe wrote suspicious process AntiVM_Disk WriteConsoleW VM Disk Size Check Windows ComputerName Cryptographic key crashed
3 14.4 M 34 ZeroCERT

12012 2021-09-02 18:00 al.exe  

06e4385a4ba6f66a4674cd1445470aea


NPKI Generic Malware UPX Malicious Library Malicious Packer PE File PE64 VirusTotal Malware MachineGuid Check memory Checks debugger unpack itself ComputerName
2.8 M 25 ZeroCERT

12013 2021-09-02 18:01 969020.exe  

d1c8cab62ee02ec699f2b4949c0e8b8f


RAT Generic Malware Malicious Packer Antivirus PE File PE64 VirusTotal Malware powershell AutoRuns suspicious privilege MachineGuid Check memory Checks debugger Creates shortcut Creates executable files unpack itself Windows utilities powershell.exe wrote suspicious process WriteConsoleW Windows ComputerName Cryptographic key
8.0 M 45 ZeroCERT

12014 2021-09-02 18:02 vbc.exe  

91fd7c0ae9a2360c54e296b92e5be179


PWS .NET framework Generic Malware PE File .NET EXE PE32 VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger unpack itself Windows Cryptographic key
4.6 M 12 ZeroCERT

12015 2021-09-02 18:02 hammerfall.exe  

d6fabeb016a5ef8b65a634158d6e35ae


RAT PWS .NET framework Generic Malware PE File OS Processor Check .NET EXE PE32 VirusTotal Malware Malicious Traffic Check memory Checks debugger unpack itself Check virtual network interfaces Tofsee Windows DNS Cryptographic key
1 3 1 4.6 M 43 ZeroCERT