Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
15211 2023-03-05 04:59 http://182.127.64.214:54325/i  


AntiDebug AntiVM MSOffice File PNG Format JPEG Format Code Injection RWX flags setting exploit crash unpack itself Windows utilities Windows Exploit DNS crashed
1 5.4 guest

15212 2023-03-05 04:59 https://www.vmware.rest/jquery...  


PWS[m] Downloader Anti_VM Create Service DGA Socket ScreenShot DNS Internet API Code injection Hijack Network Sniff Audio HTTP Steal credential KeyLogger P2P Escalate priviledges persistence FTP Http API AntiDebug AntiVM PNG Format MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
8 2 2 4.8 guest

15213 2023-03-05 04:59 https://vmware.rest/jquery-3.3...  


PWS[m] Downloader Anti_VM Create Service DGA Socket ScreenShot DNS Internet API Code injection Hijack Network Sniff Audio HTTP Steal credential KeyLogger P2P Escalate priviledges persistence FTP Http API AntiDebug AntiVM PNG Format MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
8 2 2 4.2 guest

15214 2023-03-05 04:59 http://190.109.236.187:37981/b...  

eec5c6c219535fba3a0492ea8118b397


AntiDebug AntiVM Code Injection unpack itself Windows utilities Windows DNS
1 1 4.4 M guest

15215 2023-03-05 04:57 https://108.165.178.42:9091/cm  

d41d8cd98f00b204e9800998ecf8427e


AntiDebug AntiVM PNG Format JPEG Format MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities Windows Exploit DNS crashed
1 1 3.8 guest

15216 2023-03-05 04:56 http://121.4.60.187/IE9CompatV...  

d41d8cd98f00b204e9800998ecf8427e


AntiDebug AntiVM MSOffice File Malware Code Injection Malicious Traffic RWX flags setting exploit crash unpack itself Windows utilities Windows Exploit DNS crashed
2 1 4.2 guest

15217 2023-03-05 04:56 http://63.250.60.241  


AntiDebug AntiVM PNG Format MSOffice File JPEG Format Code Injection RWX flags setting exploit crash unpack itself Windows utilities Windows Exploit DNS crashed
1 4.8 guest

15218 2023-03-05 04:55 http://164.90.178.90/  


AntiDebug AntiVM PNG Format MSOffice File JPEG Format Code Injection RWX flags setting exploit crash unpack itself Windows utilities Windows Exploit DNS crashed
1 4.8 guest

15219 2023-03-05 04:54 http://hooneypref.net  

9dd172a836334f81b8e77c6bdd621ba2


PWS[m] Downloader Create Service DGA Socket ScreenShot DNS Internet API Code injection Hijack Network Sniff Audio HTTP Steal credential KeyLogger P2P Escalate priviledges persistence FTP Http API AntiDebug AntiVM MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
2 2 2 4.2 guest

15220 2023-03-05 04:54 https://negopisetu.com/mk.css  


AntiDebug AntiVM PNG Format MSOffice File JPEG Format Code Injection RWX flags setting exploit crash unpack itself Windows utilities Windows Exploit DNS crashed
1 3.8 guest

15221 2023-03-05 04:54 https://outlook.office365.lol:...  


PWS[m] Downloader Create Service DGA Socket ScreenShot DNS Internet API Code injection Hijack Network Sniff Audio HTTP Steal credential KeyLogger P2P Escalate priviledges persistence FTP Http API AntiDebug AntiVM PNG Format MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
2 2 4.8 guest

15222 2023-03-05 04:53 http://avis21evraksi32zkirala....  

9dd172a836334f81b8e77c6bdd621ba2


AntiDebug AntiVM MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities Tofsee Windows Exploit DNS crashed
2 2 2 3.8 guest

15223 2023-03-05 04:52 http://123.249.77.187:8080/__u...  

d41d8cd98f00b204e9800998ecf8427e


PWS[m] Downloader Create Service DGA Socket ScreenShot DNS Internet API Code injection Hijack Network Sniff Audio HTTP Steal credential KeyLogger P2P Escalate priviledges persistence FTP Http API AntiDebug AntiVM MSOffice File Malware Code Injection Malicious Traffic RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
2 1 2 6.2 guest

15224 2023-03-05 04:52 http://interstellarimyepni.xyz  


PWS[m] Downloader Create Service DGA Socket ScreenShot DNS Internet API Code injection Hijack Network Sniff Audio HTTP Steal credential KeyLogger P2P Escalate priviledges persistence FTP Http API AntiDebug AntiVM PNG Format MSOffice File JPEG Format Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
1 2 5.8 guest

15225 2023-03-05 04:50 http://216.83.38.235/pixel.gif  

d41d8cd98f00b204e9800998ecf8427e


PWS[m] Downloader Create Service DGA Socket ScreenShot DNS Internet API Code injection Hijack Network Sniff Audio HTTP Steal credential KeyLogger P2P Escalate priviledges persistence FTP Http API AntiDebug AntiVM MSOffice File Malware Code Injection Malicious Traffic RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
2 1 2 5.2 guest