Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
2851 2020-11-12 09:24 msi.zip  

b7f761dd1023f9ce8fa7a3b53ebdd97a


VirusTotal Malware DNS
1 3 2.0 M 30 admin

2852 2020-11-12 09:49 msi.zip  

b7f761dd1023f9ce8fa7a3b53ebdd97a


VirusTotal Malware DNS
1 3 2.0 M 30 admin

2853 2020-11-12 09:52 5.exe  

f139bcd08ad8da406f7dd25411d1c9b3


VirusTotal Malware unpack itself malicious URLs
2.8 M 60 admin

2854 2020-11-12 09:52 msi.zip  

b7f761dd1023f9ce8fa7a3b53ebdd97a


VirusTotal Malware DNS
1 3 2.0 M 30 admin

2855 2020-11-12 09:54 5.exe  

f139bcd08ad8da406f7dd25411d1c9b3


VirusTotal Malware unpack itself malicious URLs
2.8 M 60 admin

2856 2020-11-12 09:56 5.exe  

f139bcd08ad8da406f7dd25411d1c9b3


VirusTotal Malware unpack itself malicious URLs
2.8 M 60 admin

2857 2020-11-12 09:57 5.exe  

f139bcd08ad8da406f7dd25411d1c9b3


VirusTotal Malware unpack itself malicious URLs
2.8 M 60 admin

2858 2020-11-12 10:29 4574557.png.exe  

c308c403c6d11d554dedd806fdd6313e


AutoRuns Code Injection Check memory buffers extracted unpack itself Windows utilities Detects VMWare suspicious process malicious URLs sandbox evasion WriteConsoleW VMware Windows Browser ComputerName crashed
9.0 SFPark

2859 2020-11-12 10:35 axcjgfhwvvas.exe  

a7bb277ebea155081e10479495249ad7


Browser Info Stealer Malware download Vidar VirusTotal Email Client Info Stealer Malware Cryptocurrency wallets Cryptocurrency suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates executable files ICMP traffic unpack itself Windows utilities Collect installed applications Check virtual network interfaces suspicious process AppData folder malicious URLs WriteConsoleW anti-virtualization installed browsers check OskiStealer Stealer Windows Browser Email ComputerName
11 3 7 20.6 M 45 SFPark

2860 2020-11-12 11:11 b.exe  

268f6a197a208cca3d28c81059a0267d


Code Injection Checks debugger buffers extracted RWX flags setting unpack itself malicious URLs ComputerName Remote Code Execution DNS
1 9.0 SFPark

2861 2020-11-12 11:42 북한의 지역산업역량과 협력방안에 대한 전문가 의견조사서...  

777a8fb3f6f6a8a555ed1a69a7366abe


Checks debugger Creates shortcut Creates executable files unpack itself malicious URLs
2.2 admin

2862 2020-11-12 12:43 b.exe  

268f6a197a208cca3d28c81059a0267d


Code Injection Checks debugger buffers extracted RWX flags setting unpack itself malicious URLs ComputerName Remote Code Execution DNS
1 9.0 admin

2863 2020-11-12 12:48 b.exe  

268f6a197a208cca3d28c81059a0267d


Code Injection Checks debugger buffers extracted RWX flags setting unpack itself malicious URLs ComputerName Remote Code Execution DNS
1 9.0 admin

2864 2020-11-12 12:51 b.exe  

268f6a197a208cca3d28c81059a0267d


Code Injection Checks debugger buffers extracted RWX flags setting unpack itself malicious URLs ComputerName Remote Code Execution DNS
1 9.0 admin

2865 2020-11-12 12:52 b.exe  

268f6a197a208cca3d28c81059a0267d


Code Injection Checks debugger buffers extracted RWX flags setting unpack itself malicious URLs ComputerName Remote Code Execution DNS
2 9.0 admin