Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1801 2020-09-21 09:42 ds2.exe  

1ab3a2b9bf5d053d714cde9826123beb


VirusTotal Malware suspicious privilege Check memory Checks debugger unpack itself Disables Windows Security suspicious process malicious URLs Windows ComputerName Cryptographic key
6.0 M 25 admin

1802 2020-09-21 11:33 Offer-ART200904-20phz.exe  

39f083bf241eb90c900c26460e25fa6c


Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows utilities suspicious process malicious URLs WriteConsoleW Ransomware Windows Browser Tor Email ComputerName Cryptographic key Software crashed
15.0 40 admin

1803 2020-09-21 12:22 Offer-ART200904-20phz.exe  

39f083bf241eb90c900c26460e25fa6c


Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows utilities suspicious process malicious URLs WriteConsoleW Ransomware Windows Browser Tor Email ComputerName Cryptographic key Software crashed
15.0 40 admin

1804 2020-09-21 13:19 Offer-ART200904-20phz.exe  

39f083bf241eb90c900c26460e25fa6c


Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows utilities suspicious process malicious URLs WriteConsoleW Ransomware Windows Browser Tor Email ComputerName Cryptographic key Software crashed
15.0 40 admin

1805 2020-09-21 13:25 Offer-ART200904-20phz.exe  

39f083bf241eb90c900c26460e25fa6c


Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows utilities suspicious process malicious URLs WriteConsoleW Ransomware Windows Browser Tor Email ComputerName Cryptographic key Software crashed
15.0 40 admin

1806 2020-09-21 13:32 Offer-ART200904-20phz.exe  

39f083bf241eb90c900c26460e25fa6c


Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows utilities suspicious process malicious URLs WriteConsoleW Ransomware Windows Browser Tor Email ComputerName Cryptographic key Software crashed
15.0 40 admin

1807 2020-09-21 13:38 Offer-ART200904-20phz.exe  

39f083bf241eb90c900c26460e25fa6c


Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows utilities suspicious process malicious URLs WriteConsoleW Ransomware Windows Browser Tor Email ComputerName Cryptographic key Software crashed
15.6 40 admin

1808 2020-09-21 13:45 Offer-ART200904-20phz.exe  

39f083bf241eb90c900c26460e25fa6c


Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows utilities suspicious process malicious URLs WriteConsoleW Ransomware Windows Browser Tor Email ComputerName Cryptographic key Software crashed
15.6 40 admin

1809 2020-09-21 14:40 Offer-ART200904-20phz.exe  

39f083bf241eb90c900c26460e25fa6c


Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows utilities suspicious process malicious URLs WriteConsoleW Ransomware Windows Browser Tor Email ComputerName Cryptographic key Software crashed
15.6 40 admin

1810 2020-09-21 16:10 Dat 20200920 P78951.doc  

276ecb6b0eae11d22873e390b0a4a93d


Vulnerability VirusTotal Malware Malicious Traffic unpack itself malicious URLs Tofsee Windows DNS
2 5 4 6.4 M 36 admin

1811 2020-09-21 16:24 MES-20200921-67994.doc  

26a77528506cd55eb3c4c2fd5d9604ce


Vulnerability VirusTotal Malware Malicious Traffic unpack itself malicious URLs Tofsee DNS
3 4 1 6.4 11 admin

1812 2020-09-21 16:29 DmUxQiZ.exe  

9ef36eb6666cbd816063b6a067993c82


Malware PDB Malicious Traffic RWX flags setting unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName Remote Code Execution DNS Cryptographic key
1 3 7.8 admin

1813 2020-09-22 10:08 Untitled-20200922-ET732.doc  

7ce8d9626a27fb9e48df5ed6aa330727


Vulnerability VirusTotal Malware Malicious Traffic unpack itself malicious URLs Windows DNS
2 2 4 5.0 19 admin

1814 2020-09-22 10:10 MAIN.exe  

7c357e54f775f0042c2d8e36d0c38fa9


Dridex TrickBot VirusTotal Malware PDB Malicious Traffic unpack itself Check virtual network interfaces malicious URLs Tofsee Kovter ComputerName DNS
3 3 2 5.8 M 48 admin

1815 2020-09-22 10:12 p_1701vg9ts1.jpg.exe  

264cc8acfd74b2dc61c4601ebed22625


VirusTotal Malware Check memory Checks debugger Creates executable files unpack itself AppData folder malicious URLs WriteConsoleW DNS
1 1 5.8 60 admin