Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
3196 2024-06-08 05:14 audit_mysql_query.js  

fb19223c47d5c7074fd72c85cc60dda8


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs
0.8 guest

3197 2024-06-08 05:13 audit_config.js  

8844362d35d4da5ab4dbad038f9a226f


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs crashed
1.0 guest

3198 2024-06-08 05:13 jquery-ui-core.js  

d7488f9130463f917ab875a9431606a8


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs crashed
1.0 guest

3199 2024-06-08 05:13 audit_log.html  

cfc4dd7a77f4dd5fa271fc822560302e


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
2 4.8 guest

3200 2024-06-08 05:12 testipscan.xlsx  

62af5df60e921eb75e8a811735317410


PWS ZIP Format unpack itself malicious URLs
2.0 guest

3201 2024-06-08 05:12 audit_cmd.js  

9b3f2bc442accabeaf421ab5f15229ad


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs
0.8 guest

3202 2024-06-08 05:11 index.html  

0227cfd904e99656279202032b98d4a7


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM StartPage Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
2 4.2 guest

3203 2024-06-08 05:11 async_alerts.js  

09e2e0e7aa88ad413b5319d8268a1d1d


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs crashed
1.0 guest

3204 2024-06-08 05:11 export_file.html  

ba18e54410f8138a68ae1e581c241032


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
2 4.8 guest

3205 2024-06-08 05:10 ajax.js  

abde971f007c55f8747734b91684e174


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs
0.8 guest

3206 2024-06-08 05:10 offline.cmd  

558c011f11e9172d07fe2db3d2d47e71


Downloader task schedule Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P persistence AntiDebug AntiVM unpack itself WriteConsoleW
1.0 guest

3207 2024-06-08 05:10 Openaudit-Clientscan.lnk  

afa017bc06e99f342bcabf241ef1a631


Generic Malware task schedule Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM Lnk Format GIF Creates shortcut unpack itself malicious URLs WriteConsoleW
1.8 guest

3208 2024-06-08 05:10 PopupMenu.js  

b7e1851d03c8ccc2389d75113ab4ea21


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File malicious URLs crashed
1.0 guest

3209 2024-06-08 05:10 admin_config.js  

7aeb9d957d35eff708c605f3c8117ae6


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs DNS crashed
1.6 guest

3210 2024-06-08 05:08 firewall-win10-open-oa.cmd  

c14d829053bc52e0df45f97cfa6913ac


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM Windows utilities WriteConsoleW Firewall state off Windows
1.6 guest