Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
3241 2024-06-08 04:27 jquery-ui-tooltip.js  

559f23dd8ced275ac68f15cab041bf44


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs crashed
1.0 guest

3242 2024-06-08 04:26 jquery-bgiframe.js  

a868cdfcb65ff0bb01f30b5a4f56d080


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs crashed
1.0 guest

3243 2024-06-08 04:26 jquery-ui-core.js  

d7488f9130463f917ab875a9431606a8


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs crashed
1.0 guest

3244 2024-06-08 04:25 include.js  

22baec7a2a86d615172bd87a6f5b8651


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs
0.8 guest

3245 2024-06-08 04:25 audit_sched.js  

490e105efd842b5ff901d8399022e00b


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs
0.8 guest

3246 2024-06-08 04:24 include.js  

22baec7a2a86d615172bd87a6f5b8651


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs
0.8 guest

3247 2024-06-08 04:24 audit_manage.js  

589401673665be81391ca86f0804ead1


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs DNS crashed
1.6 guest

3248 2024-06-08 04:24 openaudit-clientscan-setup.exe  

2a94bd23e9d3665a0b465535cf3cbb8f


task schedule Downloader Malicious Library UPX Http API ScreenShot Escalate priviledges PWS persistence KeyLogger Create Service Socket DGA Steal credential Sniff Audio HTTP DNS Code injection Internet API FTP P2P AntiDebug AntiVM PE File PE32 MZP Format Checks debugger unpack itself malicious URLs DNS
2.6 4 guest

3249 2024-06-08 04:24 audit_mysql_query.js  

fb19223c47d5c7074fd72c85cc60dda8


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs
0.8 guest

3250 2024-06-08 04:23 oa-importcert.cmd  

4d3f949bda6999f920d5338e785f75f2


Generic Malware task schedule Downloader Antivirus Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP SMTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM powershell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Windows utilities powershell.exe wrote suspicious process malicious URLs Windows ComputerName Cryptographic key
5.4 guest

3251 2024-06-08 04:23 audit_sched.js  

490e105efd842b5ff901d8399022e00b


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs
0.8 guest

3252 2024-06-08 04:23 audit_manage.js  

589401673665be81391ca86f0804ead1


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs
0.8 guest

3253 2024-06-08 04:22 audit_mysql_query.js  

fb19223c47d5c7074fd72c85cc60dda8


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs
0.8 guest

3254 2024-06-08 04:21 audit_log.html  

cfc4dd7a77f4dd5fa271fc822560302e


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
2 4.8 guest

3255 2024-06-08 04:21 audit_config.js  

8844362d35d4da5ab4dbad038f9a226f


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs crashed
1.0 guest