Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1 2022-01-24 09:50 121Oyzuedk.exe  

dce983778e604b799e0470fd69e833f2


AgentTesla RAT PWS .NET framework Formbook browser info stealer BitCoin Generic Malware Google Chrome User Data TEST UPX Malicious Packer Create Service DGA Socket DNS Internet API Code injection Sniff Audio HTTP KeyLogger FTP Escalate priviledges Downloa Browser Info Stealer VirusTotal Malware Buffer PE AutoRuns suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files ICMP traffic exploit crash unpack itself Windows utilities Check virtual network interfaces suspicious process AppData folder malicious URLs WriteConsoleW installed browsers check Windows Exploit Browser Cryptographic key crashed
1 4 16.8 M 34 ZeroCERT

2 2022-01-24 09:41 85013500002.exe  

6fd7a75e4a31a4d0391cde2eafa6d5e2


RAT Generic Malware Antivirus AntiDebug AntiVM PE File PE32 .NET EXE FormBook Malware download VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut ICMP traffic unpack itself Windows utilities Check virtual network interfaces suspicious process WriteConsoleW Windows ComputerName Cryptographic key crashed
2 7 1 12.2 M 45 ZeroCERT

3 2022-01-24 09:33 Onxeq.exe  

695ce44856e02eff7fcb34067f8c1df3


RAT Generic Malware Antivirus AntiDebug AntiVM PE File PE32 .NET EXE FormBook Malware download VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut ICMP traffic unpack itself Windows utilities Check virtual network interfaces suspicious process WriteConsoleW Windows ComputerName Cryptographic key crashed
3 8 1 13.0 M 39 ZeroCERT

4 2022-01-21 18:30 4rodtz.exe  

233cb586e29201d80a88a4dda7b8dfc4


RAT PWS .NET framework Generic Malware SMTP KeyLogger PDF AntiDebug AntiVM PE File PE32 .NET EXE Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware AutoRuns suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files ICMP traffic unpack itself Windows utilities Check virtual network interfaces suspicious process AntiVM_Disk sandbox evasion WriteConsoleW IP Check VM Disk Size Check installed browsers check Tofsee Windows Browser Email ComputerName DNS Cryptographic key DDNS Software crashed
8 8 3 21.8 M 46 ZeroCERT

  • First
  • 1
  • Last
  • Total : 4cnts