Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
14626 2023-03-14 17:30 9666.exe  

889a73d55a0c4cd0bb02ff23a9d42332


Malicious Library PE32 PE File VirusTotal Malware Check memory RWX flags setting unpack itself AntiVM_Disk sandbox evasion VM Disk Size Check Browser DNS
2 5.2 M 45 ZeroCERT

14627 2023-03-14 17:28 niubi.exe  

ac9cc7a0d1a9e1cfde6591605f42a8d3


Malicious Library PE32 PE File VirusTotal Malware Check memory RWX flags setting unpack itself AntiVM_Disk sandbox evasion VM Disk Size Check Browser DNS
1 5.2 M 47 ZeroCERT

14628 2023-03-14 17:28 669.exe  

29d9a7e9c97682c4b36ccb8461b79778


Malicious Library PE32 PE File VirusTotal Malware Check memory RWX flags setting unpack itself AntiVM_Disk sandbox evasion VM Disk Size Check Browser DNS
2 5.2 M 43 ZeroCERT

14629 2023-03-14 17:26 photo_004.exe  

451f7804ad94b840a35cb82aaf2b94e4


UPX Malicious Library OS Processor Check PE32 PE File VirusTotal Malware unpack itself Remote Code Execution
2.0 M 34 ZeroCERT

14630 2023-03-14 17:26 103.exe  

bc6f4c15c378f362aaf7d37644735eae


PE32 PE File VirusTotal Malware Check memory RWX flags setting unpack itself AntiVM_Disk sandbox evasion VM Disk Size Check Browser DNS
1 5.2 M 50 ZeroCERT

14631 2023-03-14 10:51 85.exe  

ec50388a69792d133c1298e1dceb40a6


RAT Generic Malware Themida Packer Suspicious_Script_Bin Downloader UPX Malicious Library Antivirus Malicious Packer Create Service DGA Socket ScreenShot DNS Internet API Code injection PWS[m] Sniff Audio HTTP Steal credential KeyLogger P2P Escalate privi Browser Info Stealer Malware download FTP Client Info Stealer NetWireRC VirusTotal Malware Telegram Buffer PE suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files unpack itself Disables Windows Security Checks Bios Detects VMWare Check virtual network interfaces AppData folder AntiVM_Disk WriteConsoleW VMware anti-virtualization IP Check VM Disk Size Check Tofsee Ransomware DCRat Windows Browser ComputerName Remote Code Execution Firmware DNS Cryptographic key Software crashed keylogger
35 6 13 20.6 M 32 ZeroCERT

14632 2023-03-14 10:46 monnn.exe  

bd7da39a826d40d755a686cfa5acb2c8


UPX Malicious Library PE32 PE File FormBook Malware download VirusTotal Malware suspicious privilege Malicious Traffic Check memory Creates executable files unpack itself DNS
5 11 1 6.0 M 37 ZeroCERT

14633 2023-03-14 10:40 photo_004.exe  

12a537a002dd62b3ed45d111060814d8


UPX Malicious Library OS Processor Check PE32 PE File VirusTotal Malware PDB unpack itself Remote Code Execution
2.4 M 25 ZeroCERT

14634 2023-03-14 10:38 chima.exe  

bab62d2eeaafa0e110675caf7e3b1dbc


PWS .NET framework Generic Malware UPX Antivirus SMTP KeyLogger AntiDebug AntiVM .NET EXE PE32 PE File Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware powershell suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut unpack itself Windows utilities powershell.exe wrote Check virtual network interfaces suspicious process WriteConsoleW IP Check Tofsee Windows Browser Email ComputerName Cryptographic key Software crashed
1 2 1 13.8 M 37 ZeroCERT

14635 2023-03-14 10:38 file1.exe  

9de3f2386e48666cb8a7192cefc9e92b


PWS .NET framework RAT Generic Malware UPX Antivirus ScreenShot SMTP PWS[m] AntiDebug AntiVM .NET EXE PE32 PE File Browser Info Stealer VirusTotal Malware Cryptocurrency wallets Cryptocurrency suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut unpack itself Collect installed applications suspicious process installed browsers check Windows Browser ComputerName Firmware DNS Cryptographic key
1 1 1 13.6 M 33 ZeroCERT

14636 2023-03-14 10:36 GIB.exe  

2ff3c88cc079f50ba0000d386f8f208f


UPX Malicious Library PE32 PE File Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware AutoRuns Check memory Checks debugger buffers extracted Creates executable files unpack itself Check virtual network interfaces AppData folder IP Check Tofsee Windows Browser Email ComputerName Cryptographic key Software crashed
1 2 1 8.4 M 38 ZeroCERT

14637 2023-03-14 10:36 stlr.exe  

e179b14f26972c159c58519496978a07


UPX Malicious Library OS Processor Check PE32 PE File VirusTotal Malware Checks debugger unpack itself crashed
2.6 M 56 ZeroCERT

14638 2023-03-14 09:36 eatn.js  

2673f27962ec3428d2a6a10c5f7df171

unpack itself crashed
0.6 ZeroCERT

14639 2023-03-14 09:32 photo_004.exe  

eafb2477c841d5bb47c0fa40d26244df


UPX Malicious Library OS Processor Check PE32 PE File PDB unpack itself Remote Code Execution
1.6 ZeroCERT

14640 2023-03-14 09:32 cm.js  

7015acec5092593d5285179dc4024e58


AntiDebug AntiVM MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities Tofsee Windows Exploit DNS crashed
2 3.8 ZeroCERT