Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
14731 2023-03-17 09:48 Setupdark.exe  

d4fc8415802d26f5902a925dafa09f95


EnigmaProtector UPX Malicious Library Malicious Packer PE64 PE File VirusTotal Malware Check memory Creates executable files unpack itself suspicious process AntiVM_Disk WriteConsoleW VM Disk Size Check
5.2 M 28 ZeroCERT

14732 2023-03-17 09:46 emestart.ps1  

35185834a1d47d6b03e843a2181d3100


Formbook PWS .NET framework Hide_EXE Generic Malware Antivirus KeyLogger PDF AntiDebug AntiVM ZIP Format .NET EXE PE32 PE File Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware powershell suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files unpack itself Windows utilities powershell.exe wrote Check virtual network interfaces suspicious process AntiVM_Disk sandbox evasion WriteConsoleW VM Disk Size Check installed browsers check Windows Browser Email ComputerName DNS Cryptographic key Software crashed
6 1 1 1 19.8 M 15 ZeroCERT

14733 2023-03-17 09:45 sekontary2.1.exe  

f2e4e0ba9fc3fe9d2229c31c4a5a40d0


UPX Malicious Library Downloader PE32 PE File VirusTotal Malware AutoRuns Check memory Creates executable files ICMP traffic unpack itself AppData folder Windows DNS DDNS
2 2 6.6 M 43 ZeroCERT

14734 2023-03-17 09:43 photo_004.exe  

f7e469503c0699679d8d960684826bf3


Generic Malware UPX Malicious Library OS Processor Check PE32 PE File VirusTotal Malware unpack itself Remote Code Execution
2.0 M 37 ZeroCERT

14735 2023-03-17 09:42 10MIL.exe  

ff7f91fa0ee41b37bb8196d9bb44070c


PWS .NET framework RAT UPX OS Processor Check .NET EXE PE32 PE File Browser Info Stealer FTP Client Info Stealer VirusTotal Malware suspicious privilege Check memory Checks debugger buffers extracted WMI unpack itself Collect installed applications installed browsers check Windows Browser ComputerName DNS Cryptographic key Software crashed
1 7.8 M 54 ZeroCERT

14736 2023-03-17 09:41 macsplin3.1.exe  

05ca94d88d462bef2458ec93ed42df23


UPX Malicious Library Malicious Packer PE32 PE File VirusTotal Malware AutoRuns Check memory Creates executable files unpack itself AppData folder Windows crashed
4.6 M 40 ZeroCERT

14737 2023-03-17 09:38 Dop  

9b82f37e58f9bb27d2a7dd96e9e2f702


Malicious Library Malicious Packer DLL PE64 PE File VirusTotal Malware Check memory Checks debugger unpack itself suspicious process sandbox evasion Remote Code Execution
4.4 M 45 ZeroCERT

14738 2023-03-17 07:56 loader_p1_dll_64_n1_x64_inf.dl...  

47fc7775d368ebe67b4b27c7913a4e11


UPX OS Processor Check DLL PE64 PE File VirusTotal Malware PDB Checks debugger crashed
1.6 5 ZeroCERT

14739 2023-03-17 07:52 My5PdKnB  

6f262e779fc26d8dd89c942c744eecba


Gen2 Gen1 UPX Malicious Library Malicious Packer OS Processor Check DLL PE64 PE File VirusTotal Malware Check memory Checks debugger unpack itself suspicious process sandbox evasion Remote Code Execution
3.8 M 8 ZeroCERT

14740 2023-03-17 07:36 91.exe  

e309c8e66cb963033a3e8cc4b480f81d


NPKI UPX Malicious Library OS Processor Check PE64 PE File Browser Info Stealer VirusTotal Malware MachineGuid Check memory Checks debugger Creates shortcut unpack itself Windows utilities suspicious process Ransomware Windows Browser ComputerName DNS crashed
1 6.4 M 37 ZeroCERT

14741 2023-03-16 16:49 c339d4dd247e4069ef221cfaf63cba...  

99efa19440acb8132312136bfa7d0981


UPX Malicious Library OS Processor Check DLL PE32 PE File VirusTotal Malware
1.6 39 guest

14742 2023-03-16 14:30 file.zip  

1701259e39636d400dd1f48f633c98be


ZIP Format VirusTotal Malware
0.8 M 28 ZeroCERT

14743 2023-03-16 13:21 File_pass1234.zip  

4db4161883df15ab90bd7ffba1df4910


ZIP Format Malware Malicious Traffic IP Check Tofsee DNS
4 9 2 2.2 ZeroCERT

14744 2023-03-16 12:06 1603.one  

3267ae8154776913b0032a6806fdb9c3

VirusTotal Malware unpack itself crashed
1.0 8 ZeroCERT

14745 2023-03-16 11:36 uwp.dat  

63b2b3193b0311cf4bfae3fed891adb8


AntiDebug AntiVM Email Client Info Stealer suspicious privilege Checks debugger Creates shortcut unpack itself installed browsers check Browser Email ComputerName
3.4 guest