Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
106 2020-07-22 14:01 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Dridex Malware Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
7 8 3 4.6

107 2020-07-22 15:21 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Dridex Malware Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
7 8 3 4.6

108 2020-07-22 15:26 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Dridex Malware Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
7 8 3 4.6

109 2020-07-22 15:52 http://198.23.213.30/word.exe  

c016c1bdb8995100702bd07d1108b886


VirusTotal Malware Code Injection Malicious Traffic Creates executable files exploit crash unpack itself Windows utilities AppData folder Tofsee Windows Exploit DNS crashed
2 2 4 5.2

110 2020-07-22 15:53 http://slacktracks.com/private...  

b5f4ecf1a13b7ef894523c990b963a84


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates executable files exploit crash unpack itself Windows utilities AppData folder malicious URLs Tofsee Windows Exploit DNS Cryptographic key crashed Downloader
2 2 3 11.8 M 53

111 2020-07-22 16:01 Rep-2020_07_22-27528.doc  

5daf4caf65c9cb99afcc98de4b5e1fcb


Vulnerability VirusTotal Malware Malicious Traffic unpack itself Tofsee DNS
2 2 1 4.4 20

112 2020-07-22 16:37 http://dmm555.com/  

698666557066b83279baf873968067b6


Malware Code Injection Malicious Traffic buffers extracted wscript.exe payload download Creates executable files exploit crash unpack itself Windows utilities suspicious process malicious URLs Tofsee Windows Exploit DNS crashed
9 7 2 14.4

113 2020-07-22 23:55 nDGG7uAL7NbhjRK.exe  

94f5d57d1bb59e0d46ef9d2f46c438db


Checks debugger unpack itself Detects VirtualBox malicious URLs Tofsee Windows
3 6 1 3.0

114 2020-07-23 10:43 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Dridex Malware Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
7 8 3 4.6

115 2020-07-23 10:44 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Dridex Malware Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
7 8 3 4.6

116 2020-07-23 10:52 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Dridex Malware Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
7 8 3 4.6

117 2020-07-23 10:58 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Dridex Malware Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
7 8 3 4.6

118 2020-07-23 11:27 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Dridex Malware Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit crashed
7 7 3 4.0

119 2020-07-23 11:33 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Dridex Malware Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities Tofsee Windows Exploit crashed
7 7 3 3.6

120 2020-07-23 13:28 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Dridex Malware Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit crashed
7 7 3 4.0