Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1741 2020-09-16 16:49 svchost.exe  

cbe1211c8d74ac3d4026daa41db09904


VirusTotal Malware Malicious Traffic Check memory Checks debugger unpack itself Check virtual network interfaces malicious URLs Tofsee DNS
2 2 1 4.4 14 guest

1742 2020-09-16 18:27 6GlAbyMpZgmLF.exe  

c3baa07881818b623f9433a392c11bca


Malware Malicious Traffic RWX flags setting unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName Remote Code Execution DNS Cryptographic key
1 1 5.4 guest

1743 2020-09-16 18:27 Rep_20200916.doc  

eea2693b5c7a9e5d218ec0942337eb9c


Vulnerability VirusTotal Malware Malicious Traffic unpack itself Windows DNS
1 1 3 3.8 12 admin

1744 2020-09-17 07:52 http://andresirjan.ir/wp-admin...  

688961b4a5d410802e536b0693540fba


VirusTotal Malware AutoRuns Code Injection Malicious Traffic Creates executable files RWX flags setting exploit crash unpack itself Windows utilities Auto service malicious URLs AntiVM_Disk sandbox evasion VM Disk Size Check human activity check Windows Exploit Advertising ComputerName DNS Cryptographic key crashed
3 3 2 12.4 guest

1745 2020-09-17 09:00 D_PO_09172020EX.doc  

e21311a427025c36e1c7aff283822851


Vulnerability VirusTotal Malware Malicious Traffic unpack itself malicious URLs Windows DNS
2 2 3 5.0 15 admin

1746 2020-09-17 09:02 3kknRIqyLadKQddiLJu0.exe  

8428926592a23a849523726cbb9e351b


Malware Malicious Traffic RWX flags setting unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName Remote Code Execution DNS Cryptographic key
1 1 5.8 admin

1747 2020-09-17 09:30 qq.exe  

594719c16f8cb2849bf7d54e9e7a5e5f


VirusTotal Malware unpack itself sandbox evasion crashed
3.2 M 32 admin

1748 2020-09-17 09:45 BAL_P0CKUYH.doc  

23830f7559bb6f2aeea9518d22466bee


Vulnerability VirusTotal Malware Malicious Traffic unpack itself malicious URLs Tofsee Windows DNS
2 5 6 6.4 31 admin

1749 2020-09-17 09:46 jaU9lLOuS7iGN3AU.exe  

0805f65bf7f482e8dec2c0df8f16a21d


Malware Malicious Traffic RWX flags setting unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName Remote Code Execution DNS Cryptographic key
1 1 5.8 admin

1750 2020-09-17 10:54 black.exe  

5e42c4b571d41ee78cde75a614316611


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself AppData folder malicious URLs Windows Cryptographic key
9.8 M 29 admin

1751 2020-09-17 11:01 document_41001.doc  

3d5abc66469a2c34ced4af18757fee74


VirusTotal Malware Malicious Traffic exploit crash unpack itself malicious URLs Windows Exploit DNS crashed
2 2 2 5.2 M 21 admin

1752 2020-09-17 11:27 MES_2020_09_17_F39291.doc  

bfe71f93f7bac4c0e36d71db123fc89d


Vulnerability VirusTotal Malware Malicious Traffic unpack itself malicious URLs Tofsee DNS
3 5 1 6.0 18 admin

1753 2020-09-17 13:15 61011293.doc  

c728f2e8fc4b4d5f405501f9d03f6d10


Vulnerability VirusTotal Malware Malicious Traffic unpack itself malicious URLs Windows DNS
2 2 3 5.0 18 admin

1754 2020-09-17 13:16 Z8o7iM2ao.exe  

74e1e27ff30505c68a6d398dcdcbd333


Malware Malicious Traffic RWX flags setting unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName Remote Code Execution DNS Cryptographic key
1 1 5.8 admin

1755 2020-09-17 13:18 invoice_241237.doc  

55f33ea5bc39bf4b3d1b8b84bf490d0f


LokiBot Malware download VirusTotal Malware c&c Malicious Traffic exploit crash unpack itself malicious URLs Windows Exploit Trojan DNS crashed
2 2 15 5.6 25 admin