top title background image
Malware  Trends
flash

Detection Sample Info Download Report Classification & Info Graph
Suspicious
https://www.snam.it/it/i-nostri-business/trasporto.html
2024-08-28 14:01:35 +02:00
Info
Class
Malicious
  • Yara
  • Sigma
  • Suricata
FormBook, GuLoader, Remcos
AV: None
PO_GM_list_28082024202003180817418280824_purchase_doc_00000(991KB).bat
2024-08-28 14:00:09 +02:00
Info
Class
Malicious
  • Yara
  • Sigma
  • Suricata
Remcos
AV: None
August Shipment - Inv No. 041.xls
2024-08-28 13:59:05 +02:00
Info
Class
Clean
  • Sigma
https://c.web.de/@337550745597380876/74ahEl4NT1un_FYZa8msnw
2024-08-28 13:57:43 +02:00
No classification & info
no
Graph
Malicious
AV: 3%
EYOFFTITMDLXZJFFCCGFDTBIY.msi
2024-08-28 13:57:12 +02:00
Info
Malicious
  • Yara
  • Sigma
g2m.dll
2024-08-28 13:57:06 +02:00
Info
Class
Malicious
AV: 3%
BOCTGZXINFFCD20242108.msi
2024-08-28 13:56:17 +02:00
Info
Suspicious
CTGZXFCD179480408.msi
2024-08-28 13:56:15 +02:00
Info
Malicious
AV: 3%
SSCBOLGZFXVJMEICRNQMJOCDIF.msi
2024-08-28 13:56:10 +02:00
Info
Malicious
  • Yara
  • Sigma
  • Suricata
Remcos
AV: 51%
SecuriteInfo.com.Exploit.CVE-2017-11882.123.32304.23264.rtf
2024-08-28 13:54:03 +02:00
Info
Class
Malicious
HTMLPhisher
AV: 0%
https://zngw.officeinvoicedoc.com/DhpuI
2024-08-28 13:52:03 +02:00
Info
Class
Malicious
file.exe
2024-08-28 13:49:06 +02:00
Info
Class
Clean
Viking Culinary - Catalog.pdf
2024-08-28 13:43:04 +02:00
Info
Clean
no Icon
IMG_5822.jpg
2024-08-28 13:42:49 +02:00
Info
Malicious
  • Yara
HTMLPhisher
AV: 0%
https://silverangelshomes.com/res444.php?4-68747470733a2f2f684a456d2e6c64656e626572616e2e636f6d2f4d33306830536a4f2f-
2024-08-28 13:37:29 +02:00
Info
Class
Malicious
  • Yara
BruteRatel
AV: 29%
IMS64.dll.dll
2024-08-28 13:37:04 +02:00
Info
Class
Clean
https://app.graphiteconnect.com/signup?invite=N4IgpgtghglgNiAXCAMgTwHYYHQBUwD2AAnDAI4CuMAJjAC5oDOYATgG4wDGYj2nBEEABoQGKBDBJUmDAAJ8BYeAx16aAHLjJyAJIqwCEcwzVWmiVPUEWUWQDECFOgC8lGMAHdz21OSq0GWQBlVg5uRlkACgAJAgwAc1kAaTj4gEpZFBgIejBqJRgMDjowXAIAazAMKTA0ACkACwAjAHFOGAB5GDqdAFVnHQBGdRgdRj0AJQBWTgBhHQA2HXKABwANADVZuoBObFq6uCaMCZXqaLg6gC15pYArAE1hgBEARRfegAYru-iph4ATHVyupnBM4FdngBBDwPO4NGA3MY6CDqNhNCBTOAPADMpyaAKm11uOkeL3e6meXx+f0BwNB4MhMLhDRBQWREA2dAeAHU4OM7gQYE0LhQmjApt8eTsoa04AAPah88pQNbTTgAjZoagQOB3K5rACyFEBOzoOhgHi4nMVPI2zmoLTgFCunw2FEdcE+YF6cHKpKF6juUIALB0eb1YbhOM5Dc8GtieQBRb7PTgeDrPQ3OK48h4hi1WqA8uyfAPy0E6eWZ15TOMPDwobYrTg4w2dbrOKCaxgGiZsdq7PANHaGqEPOtQKY8gBm5QACg9DQsAEI7RhBKFQMB5KEYKFJFgynmGgC0Vzo1GezyanCUVVUDCkCymIZDr9fM4AHDtOE1qAA7CGeSfJ8TRfv+IAAL5AA
2024-08-28 13:31:52 +02:00
Info
Malicious
  • Suricata
https://interprimesolutions.com/imp/ns/?hg=vndankxgbdow&vn=ujdgsmfdd2RjQGFsLmNvbQ=
2024-08-28 13:30:41 +02:00
Info
Malicious
  • Yara
LummaC
AV: 62%
!!SetUp_2244_PassW0rds$.zip
2024-08-28 13:30:41 +02:00
Info
Class
Incomplete analysis
https://siiportale.acquirenteunico.it/comunicazioni/-/asset_publisher/5GDyPvwCeJ6E/content/riattivazione-cloud-misure?inheritRedirect=false&redirect=https://siiportale.acquirenteunico.it/comunicazioni?p_p_id=101_INSTANCE_5GDyPvwCeJ6E&p_p_lifecycle=0&p_p_state=normal&p_p_mode=view&p_p_col_id=column-2&p_p_col_pos=1&p_p_col_count=2
2024-08-28 13:27:24 +02:00
Info
Windows: InjectsWrites Registry keysDrops PE FilesHas more than one ProcessHas Email attachmentDisassembly is available
Android: Receives SMS Sends SMS Reboot Native CMD
Common: Generates Internet Traffic Generates HTTP Network Traffic Expired Sample Creates malicious files Contains malware configuration(s)
Customization Show ID column