Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
12346 2023-06-11 23:21 minuscrypt_crypted.exe  

3a68a2cbeb827588f3749568b121a79b


task schedule UPX Malicious Library ScreenShot AntiDebug AntiVM OS Processor Check PE File PE32 Browser Info Stealer Malware download FTP Client Info Stealer NetWireRC VirusTotal Malware Buffer PE suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates shortcut unpack itself Check virtual network interfaces AntiVM_Disk VM Disk Size Check DCRat Windows Browser ComputerName Software crashed
7 2 2 13.2 M 39 ZeroCERT

12347 2023-06-11 23:19 ojawar2.1.exe  

6b43c223d7bf1db3d6287decf2504719


NSIS UPX Malicious Library PE File PE32 DLL Malware download AveMaria NetWireRC VirusTotal Malware AutoRuns MachineGuid Check memory Creates executable files unpack itself AppData folder Windows RAT ComputerName DNS DDNS keylogger
2 4 5.4 M 43 ZeroCERT

12348 2023-06-11 23:13 trashcr.exe  

8130fa6b0279dd54179954acb33e57d5


RedLine stealer[m] RAT UPX AntiDebug AntiVM .NET EXE PE File PE32 Browser Info Stealer RedLine Malware download FTP Client Info Stealer VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Collect installed applications installed browsers check Stealer Windows Browser ComputerName DNS Cryptographic key Software crashed
1 3 11.0 M 46 ZeroCERT

12349 2023-06-11 23:04 gabapentin.exe  

e1c7c46a3ac8cd9ee53d864743a32218


RedLine stealer[m] RAT UPX AntiDebug AntiVM .NET EXE PE File PE32 VirusTotal Malware Code Injection Check memory Checks debugger buffers extracted unpack itself Windows DNS Cryptographic key
1 9.0 M 50 ZeroCERT

12350 2023-06-11 23:03 wininit.exe  

055e1dcecd2c329e5aa4e9ae798c8a6c


.NET EXE PE File PE32 VirusTotal Malware PDB Check memory Checks debugger unpack itself ComputerName
2.8 M 49 ZeroCERT

12351 2023-06-11 22:59 steamcmd.exe  

8207a32252287772c05c6ab0381e98f2


UPX Malicious Library PE File PE32 MSOffice File VirusTotal Malware RWX flags setting unpack itself
2.6 M 30 ZeroCERT

12352 2023-06-11 22:57 llllllllllllllllllllllllllllll...  

4dcb360da811ecbe897b157b9c9e56fb


MS_RTF_Obfuscation_Objects RTF File doc VirusTotal Malware Malicious Traffic RWX flags setting exploit crash Exploit DNS crashed
1 1 1 4.6 M 35 ZeroCERT

12353 2023-06-11 22:56 tehpoddejrka06.exe  

9189a5b029e681245e8f98a196d76958


RedLine stealer[m] RAT NSIS UPX Malicious Library AntiDebug AntiVM .NET EXE PE File PE32 Browser Info Stealer RedLine Malware download FTP Client Info Stealer VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Collect installed applications AppData folder installed browsers check Stealer Windows Browser ComputerName DNS Cryptographic key Software crashed
1 3 11.4 M 49 ZeroCERT

12354 2023-06-11 22:54 uMM.exe  

27c4f6ca1b49e3723ba158c9c268a526


PE64 PE File VirusTotal Malware ICMP traffic unpack itself DNS
1 4.0 M 43 ZeroCERT

12355 2023-06-11 22:52 [Content_Types].xml  

7084b736cec7aca9dcd6448907d35fb2


AntiDebug AntiVM MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities Tofsee Windows Exploit DNS crashed
2 3.8 guest

12356 2023-06-11 22:52 theme1.xml  

7c846c1a3ca16765bede316a0b88981f


AntiDebug AntiVM MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities Tofsee Windows Exploit DNS crashed
2 3.8 guest

12357 2023-06-11 22:51 cleanmgr.exe  

9a499fe6b96fa6952e8af6c4fee8ea21


UPX Malicious Library OS Processor Check PE File PE32 VirusTotal Malware unpack itself
2.0 M 55 ZeroCERT

12358 2023-06-11 22:50 [Content_Types].xml  

7084b736cec7aca9dcd6448907d35fb2


AntiDebug AntiVM MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities Tofsee Windows Exploit DNS crashed
2 3.8 guest

12359 2023-06-11 22:49 wtrelaxing.exe  

ec9d7eb68b700dc7f81b7a808c4642ec


RedLine stealer[m] RAT NSIS Generic Malware UPX Malicious Library AntiDebug AntiVM .NET EXE PE File PE32 Browser Info Stealer RedLine Malware download FTP Client Info Stealer VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself Collect installed applications AppData folder installed browsers check Stealer Windows Browser ComputerName DNS Cryptographic key Software crashed
1 1 11.8 M 49 ZeroCERT

12360 2023-06-11 22:49 theme1.xml  

7c846c1a3ca16765bede316a0b88981f


AntiDebug AntiVM MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities Tofsee Windows Exploit DNS crashed
2 3.8 guest