Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
13651 2023-04-25 17:54 photo_320.exe  

59e1f21059f81e37d2b76ccef848cabd


UPX Malicious Library OS Processor Check PE32 PE File PDB unpack itself Remote Code Execution
1.2 M ZeroCERT

13652 2023-04-25 17:52 BVCMN8876.exe  

2c896786bf46f1bd05b0f320d03e3fd7


PE64 PE File VirusTotal Malware PDB MachineGuid Check memory Checks debugger unpack itself
2.2 M 19 ZeroCERT

13653 2023-04-25 17:51 4496vTvIHfMUrCXRfmmfIKPViTIY.e...  

472582241e1d476578bd3b4dd159fd52


UPX Malicious Packer Malicious Library OS Processor Check PE64 PE File VirusTotal Malware
1.2 M 38 ZeroCERT

13654 2023-04-25 17:49 mimilib.dll  

67651e9d2da634adedbe216948d5f752


Malicious Packer DLL PE64 PE File VirusTotal Malware Checks debugger crashed
1.6 M 54 ZeroCERT

13655 2023-04-25 17:49 mimispool.dll  

c6cc0def7d584f431d69126c1cc33a20


DLL PE64 PE File VirusTotal Malware Check memory Checks debugger unpack itself crashed
2.2 M 50 ZeroCERT

13656 2023-04-25 10:17 MicOSOFTSearchProtocolHosb66.e...  

4cbe3baf25933bc9d0cb632422e70903


Generic Malware UPX Malicious Library PE32 PE File Malware download VirusTotal Open Directory Malware AutoRuns Malicious Traffic Check memory Creates executable files RWX flags setting AntiVM_Disk sandbox evasion VM Disk Size Check Windows Exploit Browser DNS Downloader
1 1 8 6.6 M 61 ZeroCERT

13657 2023-04-25 10:13 shedume2.1.exe  

c2193488994db0c99893eb8d336874e3


NSIS UPX Malicious Library PE32 PE File FormBook Malware download VirusTotal Malware suspicious privilege Malicious Traffic Check memory Creates executable files unpack itself
1 5 1 4.2 M 41 ZeroCERT

13658 2023-04-25 10:12 foto0174.exe  

5a02db019d97f6b06f10878fe67d7e5f


Gen1 Emotet UPX Malicious Library CAB PE32 PE File Browser Info Stealer FTP Client Info Stealer AutoRuns PDB suspicious privilege Check memory Checks debugger buffers extracted WMI Creates executable files unpack itself Collect installed applications AntiVM_Disk VM Disk Size Check installed browsers check Windows Browser ComputerName Remote Code Execution DNS Cryptographic key Software crashed
1 8.2 M ZeroCERT

13659 2023-04-25 10:10 K9h627  

2d0353eb8efe20b04bdf8b3bf71ef5a7


UPX DLL PE32 PE File PDB Checks debugger unpack itself crashed
1.4 ZeroCERT

13660 2023-04-25 08:09 bruh.bat  

e02fd6b5f8ceca4c582c54cd177bcb3a


Generic Malware Downloader Antivirus Create Service DGA Socket DNS Code injection HTTP PWS[m] Sniff Audio Steal credential Http API P2P Internet API Escalate priviledges FTP KeyLogger ScreenShot AntiDebug AntiVM PowerShell PNG Format powershell suspicious privilege Check memory Checks debugger buffers extracted Creates shortcut unpack itself Windows utilities Check virtual network interfaces suspicious process WriteConsoleW Windows ComputerName DNS Cryptographic key
1 1 7.4 ZeroCERT

13661 2023-04-25 08:08 xmrig.exe  

c0ed4f906576c06d861302e8cf924309


Generic Malware UPX Malicious Packer Malicious Library OS Processor Check PE64 PE File VirusTotal Malware unpack itself ComputerName
1.8 49 ZeroCERT

13662 2023-04-25 07:53 frankbild.rar  

67b431bbc8219713a851993f84a3f71d


PWS .NET framework RAT UPX Confuser .NET OS Processor Check .NET EXE PE32 PE File Browser Info Stealer VirusTotal Malware suspicious privilege Check memory Checks debugger buffers extracted WMI unpack itself Collect installed applications installed browsers check Windows Browser ComputerName DNS Cryptographic key crashed
1 7.0 54 ZeroCERT

13663 2023-04-25 07:34 2  

566cf1cb28a40a246b79512197115644


UPX DLL PE32 PE File PDB Checks debugger unpack itself crashed
1.4 ZeroCERT

13664 2023-04-25 07:34 2  

9b776e3f4d86ccb06d787012eae66c09


UPX DLL PE32 PE File PDB Checks debugger unpack itself crashed
1.4 ZeroCERT

13665 2023-04-24 18:11 override-mac_f76168c82308f7c98...  

92f9abaa107db0a1fd661dadb686c343


AntiDebug AntiVM Email Client Info Stealer suspicious privilege Checks debugger Creates shortcut unpack itself installed browsers check Browser Email ComputerName
3.4 BRY