Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
2311 2025-01-23 05:45 System_Microsoft-Windows-Winlo...  

d4a583c33584dea4343788eaa11d29f4


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
4.2 guest

2312 2025-01-23 05:45 System_Service-Control-Manager...  

1521a9742ed4c3e9463e4c4b2673fbc2


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
3.6 guest

2313 2025-01-23 05:44 System_Microsoft-Windows-UserP...  

d5aedd1ebd2680cf5f2c86c74ba31861


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
4.2 guest

2314 2025-01-23 05:43 System_Service-Control-Manager...  

7bdaddcfc1db6f6871e865980e88a09e


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
4.2 guest

2315 2025-01-23 05:42 System_Microsoft-Windows-UserP...  

5a068d9a4705126d1fe65899a2da74d1


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
3.6 guest

2316 2025-01-23 05:42 System_Microsoft-Windows-Winlo...  

f092524ed6419682449e01639a3af70a


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
4.2 guest

2317 2025-01-23 05:41 System_Microsoft-Windows-Time-...  

21843efeaf6d99c7dad4661c101db8a5


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
4.2 guest

2318 2025-01-23 05:40 System_Microsoft-Windows-Winlo...  

d4a583c33584dea4343788eaa11d29f4


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
3.6 guest

2319 2025-01-23 05:40 System_Microsoft-Windows-Time-...  

df72c8cf6a4bfb66b866218b8c225b81


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P BitCoin AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
4.2 guest

2320 2025-01-23 05:39 System_Microsoft-Windows-UserP...  

d5aedd1ebd2680cf5f2c86c74ba31861


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
4.2 guest

2321 2025-01-23 05:38 System_Microsoft-Windows-Power...  

d8c35eb12d038f9c101103b59b4c210e


Generic Malware Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
3.6 guest

2322 2025-01-23 05:37 System_Microsoft-Windows-UserP...  

5a068d9a4705126d1fe65899a2da74d1


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
4.2 guest

2323 2025-01-23 05:36 System_Microsoft-Windows-Kerne...  

50545c05297bfa471354400f3b33b8e0


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
4.2 guest

2324 2025-01-23 05:36 System_Microsoft-Windows-Time-...  

21843efeaf6d99c7dad4661c101db8a5


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
3.6 guest

2325 2025-01-23 05:35 System_Microsoft-Windows-Kerne...  

0d79af68766dbc5ee2f85f346ee79577


Generic Malware Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Windows DNS
4.2 guest