Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
14476 2023-03-17 09:53 soft.exe  

d32379fe6c71914d1e060b828c39d69f


PWS .NET framework RAT KeyLogger AntiDebug AntiVM .NET EXE PE32 PE File Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces IP Check Tofsee Windows Browser Email ComputerName Cryptographic key Software crashed
1 2 1 12.0 M 36 ZeroCERT

14477 2023-03-17 09:52 lish.exe  

0b39012e51e6d52ddc49dd9676ba9920


Emotet Gen2 UPX Malicious Library Malicious Packer OS Processor Check PE32 PE File DLL VirusTotal Malware Check memory buffers extracted WMI Creates executable files unpack itself AppData folder Tofsee ComputerName Remote Code Execution crashed
2 2 1 5.2 M 46 ZeroCERT

14478 2023-03-17 09:51 brg.exe  

c10bf20ea8b2665099d89da5d09b2d7b


MPRESS PE32 PE File VirusTotal Malware Check memory ICMP traffic Collect installed applications sandbox evasion anti-virtualization installed browsers check Browser ComputerName Remote Code Execution DNS
1 6.8 M 38 ZeroCERT

14479 2023-03-17 09:51 75171549446483190015.bin  

b5a83bb2dd5b3521876b6b95d9f7ca0c


Gen1 UPX Malicious Library OS Processor Check PE32 PE File VirusTotal Malware RWX flags setting unpack itself Windows utilities WriteConsoleW Windows ComputerName crashed
4.0 M 47 ZeroCERT

14480 2023-03-17 09:50 vbc.exe  

b12fe6628b45145916f3d8c86238078c


Gen2 Gen1 UPX Malicious Library PE32 PE File VirusTotal Malware PDB
1 2.2 M 45 ZeroCERT

14481 2023-03-17 09:48 97..........................97...  

9d7082961f5f3573a91e9b74d03e9fae


MS_RTF_Obfuscation_Objects RTF File doc Malware download VirusTotal Malware Malicious Traffic RWX flags setting exploit crash Windows Exploit DNS crashed Downloader
1 1 7 4.6 M 32 ZeroCERT

14482 2023-03-17 09:48 Setupdark.exe  

d4fc8415802d26f5902a925dafa09f95


EnigmaProtector UPX Malicious Library Malicious Packer PE64 PE File VirusTotal Malware Check memory Creates executable files unpack itself suspicious process AntiVM_Disk WriteConsoleW VM Disk Size Check
5.2 M 28 ZeroCERT

14483 2023-03-17 09:46 emestart.ps1  

35185834a1d47d6b03e843a2181d3100


Formbook PWS .NET framework Hide_EXE Generic Malware Antivirus KeyLogger PDF AntiDebug AntiVM ZIP Format .NET EXE PE32 PE File Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware powershell suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files unpack itself Windows utilities powershell.exe wrote Check virtual network interfaces suspicious process AntiVM_Disk sandbox evasion WriteConsoleW VM Disk Size Check installed browsers check Windows Browser Email ComputerName DNS Cryptographic key Software crashed
6 1 1 1 19.8 M 15 ZeroCERT

14484 2023-03-17 09:45 sekontary2.1.exe  

f2e4e0ba9fc3fe9d2229c31c4a5a40d0


UPX Malicious Library Downloader PE32 PE File VirusTotal Malware AutoRuns Check memory Creates executable files ICMP traffic unpack itself AppData folder Windows DNS DDNS
2 2 6.6 M 43 ZeroCERT

14485 2023-03-17 09:43 photo_004.exe  

f7e469503c0699679d8d960684826bf3


Generic Malware UPX Malicious Library OS Processor Check PE32 PE File VirusTotal Malware unpack itself Remote Code Execution
2.0 M 37 ZeroCERT

14486 2023-03-17 09:42 10MIL.exe  

ff7f91fa0ee41b37bb8196d9bb44070c


PWS .NET framework RAT UPX OS Processor Check .NET EXE PE32 PE File Browser Info Stealer FTP Client Info Stealer VirusTotal Malware suspicious privilege Check memory Checks debugger buffers extracted WMI unpack itself Collect installed applications installed browsers check Windows Browser ComputerName DNS Cryptographic key Software crashed
1 7.8 M 54 ZeroCERT

14487 2023-03-17 09:41 macsplin3.1.exe  

05ca94d88d462bef2458ec93ed42df23


UPX Malicious Library Malicious Packer PE32 PE File VirusTotal Malware AutoRuns Check memory Creates executable files unpack itself AppData folder Windows crashed
4.6 M 40 ZeroCERT

14488 2023-03-17 09:38 Dop  

9b82f37e58f9bb27d2a7dd96e9e2f702


Malicious Library Malicious Packer DLL PE64 PE File VirusTotal Malware Check memory Checks debugger unpack itself suspicious process sandbox evasion Remote Code Execution
4.4 M 45 ZeroCERT

14489 2023-03-17 07:56 loader_p1_dll_64_n1_x64_inf.dl...  

47fc7775d368ebe67b4b27c7913a4e11


UPX OS Processor Check DLL PE64 PE File VirusTotal Malware PDB Checks debugger crashed
1.6 5 ZeroCERT

14490 2023-03-17 07:52 My5PdKnB  

6f262e779fc26d8dd89c942c744eecba


Gen2 Gen1 UPX Malicious Library Malicious Packer OS Processor Check DLL PE64 PE File VirusTotal Malware Check memory Checks debugger unpack itself suspicious process sandbox evasion Remote Code Execution
3.8 M 8 ZeroCERT