Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
2641 2020-11-05 18:25 tt.exe  

fc63e8813cca45e82fdde362a2836794


VirusTotal Malware unpack itself
2.0 M 25 admin

2642 2020-11-05 18:26 main.file.rtf  

55e166bdfb914283278f0f7d9dcc9f65


Malware Malicious Traffic buffers extracted exploit crash unpack itself malicious URLs Tofsee Exploit crashed
1 2 1 4.2 admin

2643 2020-11-06 07:38 https://ultimatenutritiononlin...  

c58dd175c569b8713620bcefa5635753


Dridex VirusTotal Malware Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
3 3 4.8 guest

2644 2020-11-06 07:44 https://ultimatenutritiononlin...  

c58dd175c569b8713620bcefa5635753


Dridex VirusTotal Malware Code Injection RWX flags setting exploit crash unpack itself Windows utilities Tofsee Windows Exploit DNS crashed
3 3 4.4 admin

2645 2020-11-06 07:57 http://216.170.114.73/chous.do...  

644c300e72c2a2eb7dea039dcf95af8a


Dridex VirusTotal Malware Code Injection Malicious Traffic exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
1 2 5 5.8 27 admin

2646 2020-11-06 08:15 http://movies3002.online/1.zip  

d58abe50000351513990c86213e824bb

admin

2647 2020-11-06 09:50 http://175.208.134.150:8282/te...  

5c8e2fed189e7b7f7f1d9e756fd072f8


Code Injection RWX flags setting unpack itself Windows utilities Windows DNS
2 2 2.8 admin

2648 2020-11-06 09:58 ajhtredfga.exe  

5516ba90dc9a6978aaec99276ba4383c


Browser Info Stealer Malware download Vidar VirusTotal Email Client Info Stealer Malware Cryptocurrency wallets Cryptocurrency suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates executable files unpack itself Windows utilities Collect installed applications Check virtual network interfaces suspicious process AppData folder malicious URLs WriteConsoleW anti-virtualization installed browsers check OskiStealer Stealer Windows Browser Email ComputerName
11 3 7 18.0 M 51 guest

2649 2020-11-06 10:06 http://175.208.134.150:8282/te...  

5c8e2fed189e7b7f7f1d9e756fd072f8


Code Injection RWX flags setting unpack itself Windows utilities Windows DNS
2 2 2.8 admin

2650 2020-11-06 10:19 7123854.xlsb  

c55b3057e78df922252a6e2cec03cbd1


VirusTotal Malware Check memory Checks debugger Creates shortcut Creates executable files unpack itself malicious URLs WriteConsoleW ComputerName crashed
4.8 4 admin

2651 2020-11-06 10:20 Clhwv8.exe  

bea248598c663d948e0acacc45520392


Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware AutoRuns suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself malicious URLs Ransomware Windows Browser Tor Email ComputerName DNS Cryptographic key Software crashed
1 14.4 M 26 admin

2652 2020-11-06 10:23 document.doc  

79448c02d4b2b2e220122144474ee234


LokiBot Malware download VirusTotal Malware c&c Malicious Traffic exploit crash unpack itself malicious URLs Windows Exploit DNS crashed Downloader
2 3 11 5.0 M 28 admin

2653 2020-11-06 10:25 document2.doc  

7fbbd3038fcb18fba29a100ed36821ad


VirusTotal Malware Malicious Traffic exploit crash unpack itself malicious URLs Windows Exploit DNS crashed Downloader
3 7 2 5.2 M 24 admin

2654 2020-11-06 10:28 document3.doc  

d5c72a79881e7245bcb3fe135d4143f5


LokiBot Malware download VirusTotal Malware c&c Malicious Traffic exploit crash unpack itself malicious URLs Windows Exploit Trojan DNS crashed
2 3 13 5.2 M 36 admin

2655 2020-11-06 10:28 f4n.exe  

1db6bd4d13cb9966e8875b3812aef71d


Browser Info Stealer FTP Client Info Stealer VirusTotal Malware Cryptocurrency wallets Cryptocurrency MachineGuid Check memory Collect installed applications malicious URLs sandbox evasion anti-virtualization IP Check installed browsers check Ransomware Browser ComputerName Software
1 4 1 9.4 M 51 admin