Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
12286 2023-06-13 23:02 emmy.exe  

f5d965fa4068c325dd170be481c472f5


Admin Tool (Sysinternals etc ...) SMTP KeyLogger AntiDebug AntiVM .NET EXE PE File PE32 Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware PDB suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces IP Check Tofsee Windows Browser Email ComputerName Cryptographic key Software crashed
1 2 1 12.4 M 45 ZeroCERT

12287 2023-06-13 23:02 alex.exe  

f652ff62cc4b617cc1faf81f1d57a192


PWS .NET framework Generic Malware Antivirus SMTP KeyLogger AntiDebug AntiVM .NET EXE PE File PE32 Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware powershell PDB suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut unpack itself Windows utilities powershell.exe wrote Check virtual network interfaces suspicious process WriteConsoleW IP Check Tofsee Windows Browser Email ComputerName Cryptographic key Software crashed keylogger
4 2 14.8 M 31 ZeroCERT

12288 2023-06-13 23:00 d.exe  

fe7b14ca4f21d3a8e7dd188c25f347b7


UPX PE File PE32 VirusTotal Malware RWX flags setting crashed
1.6 33 ZeroCERT

12289 2023-06-13 22:58 cleanmgrs.exe  

bc3d73265d436ee95d52f88589993f52


NSIS UPX Malicious Library PE File PE32 OS Processor Check DLL Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware AutoRuns suspicious privilege Check memory Checks debugger Creates executable files unpack itself Check virtual network interfaces AppData folder IP Check Windows Browser Email ComputerName Cryptographic key Software crashed
2 8.2 M 44 ZeroCERT

12290 2023-06-13 22:58 Adminprivate.exe  

e99850187a39591196b7268458378965


UPX Malicious Library PE File PE32 VirusTotal Malware RWX flags setting Tofsee crashed
1 2 2 1.8 M 4 ZeroCERT

12291 2023-06-13 22:56 cleanmgr.exe  

3600dc5bd885c88ccb190e38752f558f


UPX Malicious Library PE File PE32 JPEG Format DLL VirusTotal Malware Check memory Creates executable files unpack itself AppData folder
3.0 32 ZeroCERT

12292 2023-06-13 22:55 2.exe  

a58a7de8e026e3779e469d7ce37ceb2d


UPX PE File PE32 VirusTotal Malware RWX flags setting unpack itself crashed
1.6 M 13 ZeroCERT

12293 2023-06-13 22:53 bz.exe  

f97dd898670874b524df23d89dc6a12f


Generic Malware Antivirus UPX PE File PE32 Malware download VirusTotal Malware powershell suspicious privilege Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files RWX flags setting unpack itself Windows utilities suspicious process Windows ComputerName DNS Cryptographic key crashed Downloader
1 2 6 8.0 M 33 ZeroCERT

12294 2023-06-13 22:53 Play.exe  

dbac27d5cd59776c37c8647980259fbb


UPX PE File PE32 VirusTotal Malware RWX flags setting unpack itself crashed
2.2 M 51 ZeroCERT

12295 2023-06-13 22:52 Project1.exe  

60a6d909bfe2740f27bc0514f3e7a7f5


Generic Malware Antivirus UPX Malicious Library Downloader Malicious Packer PE File PE32 PowerShell OS Processor Check JPEG Format Malware download Remcos VirusTotal Malware powershell suspicious privilege Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files RWX flags setting unpack itself Windows utilities suspicious process human activity check Windows ComputerName DNS Cryptographic key keylogger Downloader
2 5 8 9.2 M 25 ZeroCERT

12296 2023-06-13 22:51 cleanmgrs.exe  

0a5bf39759616592c2d8b63fc4192a2f


NSIS UPX Malicious Library PE File PE32 OS Processor Check DLL Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware AutoRuns suspicious privilege Check memory Checks debugger Creates executable files unpack itself Check virtual network interfaces AppData folder IP Check Windows Browser Email ComputerName Cryptographic key Software crashed
2 8.2 M 43 ZeroCERT

12297 2023-06-13 22:49 dai.exe  

e0196887a89c4a23658bb16aba29c59f


Generic Malware UPX Antivirus PE File PE32 PowerShell VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut RWX flags setting unpack itself Windows utilities powershell.exe wrote suspicious process Windows ComputerName Cryptographic key crashed
5.6 39 ZeroCERT

12298 2023-06-13 22:49 C5.exe  

8c1a8cf71bd8355d5bcd1ed5eb27f514


UPX PE File PE32 VirusTotal Malware RWX flags setting crashed
1.8 47 ZeroCERT

12299 2023-06-13 22:47 c.exe  

21d7db20f8996de7de0a4e56c5bc7b98


UPX PE File PE32 VirusTotal Malware RWX flags setting unpack itself crashed
2.0 31 ZeroCERT

12300 2023-06-13 22:45 WD.exe  

da0302e0803f64dcdb60454a87f9bf78


Loki_b Loki_m task schedule DNS PWS[m] KeyLogger ScreenShot AntiDebug AntiVM PE File PE32 VirusTotal Malware Code Injection Check memory Checks debugger buffers extracted RWX flags setting unpack itself Windows utilities WriteConsoleW Windows Remote Code Execution
7.4 29 ZeroCERT