Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
14401 2023-03-30 09:21 1.exe  

88131cfd2cca21aba749fd591b04b45f


Generic Malware UPX Malicious Library Downloader Malicious Packer OS Processor Check PE32 PE File Remcos VirusTotal Malware Malicious Traffic Check memory Windows DNS keylogger
1 4 1 4.0 50 ZeroCERT

14402 2023-03-30 09:21 2.exe  

d606a39261a0599154ba54ec565fd602


Generic Malware UPX Malicious Library Downloader Malicious Packer OS Processor Check PE32 PE File Remcos VirusTotal Malware Malicious Traffic Check memory Windows DNS keylogger
1 4 1 4.0 52 ZeroCERT

14403 2023-03-30 09:17 vbc.exe  

a98f0fd7f830e6c6514d4b8cc9934743


UPX Malicious Library PE32 PE File FormBook Malware download VirusTotal Malware suspicious privilege Malicious Traffic Check memory Creates executable files ICMP traffic unpack itself
18 19 3 17 5.2 M 37 ZeroCERT

14404 2023-03-30 09:16 try.hta  

7a8dd40f53d76872300fdba6b6429822


PWS .NET framework RAT Generic Malware Antivirus SMTP PWS[m] KeyLogger AntiDebug AntiVM PowerShell .NET EXE PE32 PE File Browser Info Stealer Malware download FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware powershell suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted heapspray Creates shortcut Creates executable files RWX flags setting unpack itself powershell.exe wrote Check virtual network interfaces suspicious process AppData folder WriteConsoleW IP Check Windows Browser Email ComputerName DNS Cryptographic key DDNS Software crashed keylogger
2 3 10 21.0 20 ZeroCERT

14405 2023-03-30 09:14 putty.exe  

f0cbe408045d492ae41ee92ad7c39bea


PWS .NET framework RAT SMTP PWS[m] KeyLogger AntiDebug AntiVM .NET EXE PE32 PE File Browser Info Stealer Malware download FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware PDB suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces IP Check Windows Browser Email ComputerName DNS Cryptographic key DDNS Software crashed keylogger
1 2 5 13.2 14 ZeroCERT

14406 2023-03-29 23:31 DvDUsSet.exe  

65de52a852356f9e0aea8b43e67105f7


Confuser .NET .NET EXE PE32 PE File VirusTotal Malware MachineGuid Check memory Checks debugger unpack itself Check virtual network interfaces Tofsee Ransomware DNS
3 3 3.8 M 62 guest

14407 2023-03-29 18:09 ppp.exe  

a82baff8213bd78f398420e6ed3d58aa


UPX .NET EXE PE32 PE File VirusTotal Malware suspicious privilege Check memory Checks debugger Creates executable files unpack itself
3.6 M 50 r0d

14408 2023-03-29 17:50 1000+FacebookSPDogs-15pc.exe  

00b84d9dee2056758a6fbb07faef57d4


PWS .NET framework RAT .NET EXE PE32 PE File VirusTotal Malware Check memory Checks debugger unpack itself ComputerName
2.0 M 35 ZeroCERT

14409 2023-03-29 17:48 cubalibre2  

54a5f1bf56bb033fabafce49f03f6794


Malicious Library DLL PE32 PE File VirusTotal Malware Checks debugger RWX flags setting unpack itself ComputerName DNS
1 1 3.4 M 52 ZeroCERT

14410 2023-03-29 17:47 ppp.exe  

a82baff8213bd78f398420e6ed3d58aa


.NET EXE PE32 PE File FormBook Malware download VirusTotal Malware suspicious privilege Malicious Traffic Check memory Checks debugger Creates executable files unpack itself DNS
16 19 2 5.8 M 50 ZeroCERT

14411 2023-03-29 17:46 Spfteysaad.exe  

8f3e8fa1ba9c4c10680a9135a2ab6724


PWS .NET framework RAT UPX .NET EXE PE32 PE File VirusTotal Malware Check memory Checks debugger unpack itself ComputerName
1.8 M 20 ZeroCERT

14412 2023-03-29 17:44 1.exe  

05d614ae9941dc597f918230c0938d11


UPX Malicious Library Malicious Packer OS Processor Check PE64 PE File VirusTotal Malware
1.4 M 9 ZeroCERT

14413 2023-03-29 17:42 buildjack.exe  

10f57aeea7d69c1fd26302daea446d8d


PWS .NET framework RAT .NET EXE PE32 PE File Browser Info Stealer VirusTotal Malware Cryptocurrency wallets Cryptocurrency Telegram Malicious Traffic Check memory Checks debugger unpack itself Check virtual network interfaces IP Check Tofsee Browser ComputerName DNS
1 4 5 5.2 M 45 ZeroCERT

14414 2023-03-29 17:41 vbc.exe  

4da41093eb4cce80c18d1e6a2391ba80


UPX Malicious Library PE32 PE File JPEG Format Browser Info Stealer Remcos VirusTotal Malware AutoRuns Check memory Checks debugger Creates executable files unpack itself AppData folder Windows Browser DNS keylogger
3 1 5.6 M 31 ZeroCERT

14415 2023-03-29 17:40 w.exe  

c200ea136a598e37eb83c8c6031b3f29


PE32 PE File VirusTotal Malware AutoRuns Creates executable files RWX flags setting unpack itself AppData folder Tofsee Windows Remote Code Execution
2 6 2 4.0 M 56 ZeroCERT