Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
15391 2023-03-05 02:27 http://54.152.152.67:8022/ga.j...  


PWS[m] Downloader Create Service DGA Socket ScreenShot DNS Internet API Code injection Hijack Network Sniff Audio HTTP Steal credential KeyLogger P2P Escalate priviledges persistence FTP Http API AntiDebug AntiVM PNG Format MSOffice File JPEG Format Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
1 2 5.8 guest

15392 2023-03-05 02:26 http://46.100.59.70:53005/.i  

9b6c3518a91d23ed77504b5416bfb5b3


Hajime Botnet IoT AntiDebug AntiVM ELF Code Injection exploit crash unpack itself Windows utilities Windows Exploit DNS crashed
1 1 3.4 M guest

15393 2023-03-05 02:26 http://78.47.226.24/  


PWS[m] Downloader Create Service DGA Socket ScreenShot DNS Internet API Code injection Hijack Network Sniff Audio HTTP Steal credential KeyLogger P2P Escalate priviledges persistence FTP Http API AntiDebug AntiVM MSOffice File PNG Format JPEG Format Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
1 2 5.8 guest

15394 2023-03-05 02:25 http://achillharpfestival.ie/w...  


PWS[m] Downloader Create Service DGA Socket ScreenShot DNS Internet API Code injection Hijack Network Sniff Audio HTTP Steal credential KeyLogger P2P Escalate priviledges persistence FTP Http API AntiDebug AntiVM BitCoin JPEG Format MSOffice File PNG Form Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
88 6 2 4.6 guest

15395 2023-03-05 02:24 http://124.220.49.47/ca  

d41d8cd98f00b204e9800998ecf8427e


AntiDebug AntiVM Malware Code Injection Malicious Traffic exploit crash unpack itself Windows utilities Windows Exploit DNS crashed
1 1 3.8 guest

15396 2023-03-05 02:23 http://achillharpfestival.ie/w...  


AntiDebug AntiVM JPEG Format PNG Format MSOffice File Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities Tofsee Windows Exploit DNS crashed
85 6 1 4.2 guest

15397 2023-03-05 02:23 https://www.tencent0.tk/traffi...  


PWS[m] Downloader Create Service DGA Socket ScreenShot DNS Internet API Code injection Hijack Network Sniff Audio HTTP Steal credential KeyLogger P2P Escalate priviledges persistence FTP Http API AntiDebug AntiVM PNG Format MSOffice File JPEG Format Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
2 3 5.2 guest

15398 2023-03-05 02:22 http://103.147.185.68/j/p23rx/...  


PWS[m] Downloader Create Service DGA Socket ScreenShot DNS Internet API Code injection Hijack Network Sniff Audio HTTP Steal credential KeyLogger P2P Escalate priviledges persistence FTP Http API AntiDebug AntiVM PNG Format MSOffice File JPEG Format Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
1 2 5.8 guest

15399 2023-03-05 02:22 http://43.156.59.131:81/pixel  

d41d8cd98f00b204e9800998ecf8427e


AntiDebug AntiVM Code Injection exploit crash unpack itself Windows utilities Windows Exploit DNS crashed
1 1 3.4 guest

15400 2023-03-05 02:21 http://103.147.185.68/i1/login...  


PWS[m] Downloader Create Service DGA Socket ScreenShot DNS Internet API Code injection Hijack Network Sniff Audio HTTP Steal credential KeyLogger P2P Escalate priviledges persistence FTP Http API AntiDebug AntiVM MSOffice File PNG Format JPEG Format Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
1 2 5.8 guest

15401 2023-03-05 02:21 http://116.202.181.154/  


AntiDebug AntiVM MSOffice File PNG Format JPEG Format Code Injection RWX flags setting exploit crash unpack itself Windows utilities Tofsee Windows Exploit DNS crashed
1 2 5.4 guest

15402 2023-03-05 02:19 http://23.225.191.10:7890/acti...  

d41d8cd98f00b204e9800998ecf8427e


AntiDebug AntiVM Code Injection RWX flags setting exploit crash unpack itself Windows utilities Windows Exploit DNS crashed
1 1 3.8 guest

15403 2023-03-05 02:19 http://103.147.185.68/o2/login...  


PWS[m] Downloader Create Service DGA Socket ScreenShot DNS Internet API Code injection Hijack Network Sniff Audio HTTP Steal credential KeyLogger P2P Escalate priviledges persistence FTP Http API AntiDebug AntiVM PNG Format MSOffice File JPEG Format Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
1 2 5.8 guest

15404 2023-03-05 02:18 https://45.61.186.108:4433/mat...  


PWS[m] Downloader Create Service DGA Socket ScreenShot DNS Internet API Code injection Hijack Network Sniff Audio HTTP Steal credential KeyLogger P2P Escalate priviledges persistence FTP Http API AntiDebug AntiVM PNG Format MSOffice File JPEG Format Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
1 2 6.4 guest

15405 2023-03-05 02:18 http://103.147.185.68/l3/login...  


AntiDebug AntiVM PNG Format MSOffice File JPEG Format Code Injection RWX flags setting exploit crash unpack itself Windows utilities Windows Exploit DNS crashed
1 4.8 guest