Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
3136 2024-06-08 05:30 stopservices.cmd  

ca1880f2d6fb1b32595c049c9d7dc1db


Downloader task schedule Create Service Socket Http API Steal credential PWS DNS Internet API DGA ScreenShot Escalate priviledges Sniff Audio HTTP Code injection FTP KeyLogger P2P AntiDebug AntiVM Windows utilities WriteConsoleW Windows
1.0 guest

3137 2024-06-08 05:29 oa-importcert.cmd  

4d3f949bda6999f920d5338e785f75f2


Downloader task schedule Socket PWS SMTP DNS Create Service DGA Http API ScreenShot Escalate priviledges Steal credential Sniff Audio HTTP Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM powershell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Windows utilities powershell.exe wrote suspicious process malicious URLs WriteConsoleW Windows ComputerName Cryptographic key
5.0 guest

3138 2024-06-08 05:29 firewall-win10-open-oa.cmd  

c14d829053bc52e0df45f97cfa6913ac


task schedule Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM Windows utilities malicious URLs WriteConsoleW Firewall state off Windows
2.0 guest

3139 2024-06-08 05:29 mysql_installservice-win10.cmd  

c3f725b9691259bd095bff47aa0ab077


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM Windows utilities WriteConsoleW Windows
1.0 guest

3140 2024-06-08 05:28 vbrunas.vbs  

0c8b0a86c4471f075663aa5b6227d5bb


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs crashed
1.0 guest

3141 2024-06-08 05:28 libeay32.dll  

e942a22f2fa3a0156f1a0447681761e1


PE64 PE File DLL PDB
0.2 guest

3142 2024-06-08 05:28 jsqr-0.2-min.js  

dee2cf9932752aecff8919f95d239891


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs crashed
1.0 guest

3143 2024-06-08 05:28 jquery-ui-tooltip.js  

559f23dd8ced275ac68f15cab041bf44


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs crashed
1.0 guest

3144 2024-06-08 05:28 nmap.vbs  

d1d1352e6a046f7ec4bc53130976ff4e


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM unpack itself malicious URLs crashed
1.4 guest

3145 2024-06-08 05:28 openaudit-win7firewall-enabler...  

4d8d32c0abb989f4734a4cf69d8714c7


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM Windows utilities WriteConsoleW Windows
1.0 guest

3146 2024-06-08 05:28 TestEmail.vbs  

8a2e07d92b5d973daa5235180a6ebab2


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM unpack itself malicious URLs crashed
1.4 guest

3147 2024-06-08 05:28 list-system.js  

2010f73010d6553ffe8d794f5cf9fd31


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs crashed
1.0 guest

3148 2024-06-08 05:28 ad-benutzer.xlsx  

25830ea336729f5f8151b25c14ec0bce


task schedule Socket DGA Http API ScreenShot Steal credential PWS DNS Internet API persistence KeyLogger AntiDebug AntiVM ZIP Format exploit crash unpack itself malicious URLs Exploit crashed
3.2 guest

3149 2024-06-08 05:27 Openaudit-Clientscan.lnk  

afa017bc06e99f342bcabf241ef1a631


Generic Malware task schedule Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM Lnk Format GIF Format Creates shortcut unpack itself WriteConsoleW
1.4 guest

3150 2024-06-08 05:27 jquery-ui-dialog.js  

b46c1423f53acab10c81a6285c125c10


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM unpack itself malicious URLs crashed
1.4 guest