Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
3271 2024-06-08 04:09 PopupMenu.js  

b7e1851d03c8ccc2389d75113ab4ea21


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs crashed
1.0 guest

3272 2024-06-08 04:08 index.html  

0227cfd904e99656279202032b98d4a7


AntiDebug AntiVM StartPage MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities Tofsee Windows Exploit DNS crashed
2 3.8 guest

3273 2024-06-08 04:08 audit.vbs  

15d55b48219e0b14efa29f7d9c8fe885


[C] All Process task schedule Downloader Antivirus [C] OS Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P Anti_VM AntiDebug AntiVM WMI malicious URLs ComputerName
1.8 3 guest

3274 2024-06-08 04:07 index.html  

0227cfd904e99656279202032b98d4a7


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM StartPage Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
2 4.8 guest

3275 2024-06-08 04:07 openaudit-win7firewall-enabler...  

4d8d32c0abb989f4734a4cf69d8714c7


Downloader task schedule Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM Windows utilities malicious URLs WriteConsoleW Windows
1.4 guest

3276 2024-06-08 04:04 Openaudit-Clientscan.lnk  

afa017bc06e99f342bcabf241ef1a631


Generic Malware Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM Lnk Format GIF Format Creates shortcut unpack itself malicious URLs WriteConsoleW
1.8 guest

3277 2024-06-08 04:03 openaudit-win7firewall-enabler...  

4d8d32c0abb989f4734a4cf69d8714c7


task schedule Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM Windows utilities malicious URLs WriteConsoleW Windows
1.4 guest

3278 2024-06-08 04:03 oaclientside.cmd  

008780c9a914156a8190fbfb852fb9c3


task schedule Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P persistence AntiDebug AntiVM unpack itself WriteConsoleW
1.0 guest

3279 2024-06-08 04:01 Openaudit-Clientscan.lnk  

afa017bc06e99f342bcabf241ef1a631


Generic Malware Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM Lnk Format GIF Format Creates shortcut unpack itself malicious URLs WriteConsoleW
1.8 guest

3280 2024-06-08 04:00 oaclientside.cmd  

008780c9a914156a8190fbfb852fb9c3


task schedule Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P persistence AntiDebug AntiVM unpack itself WriteConsoleW
1.0 guest

3281 2024-06-08 03:58 terminalsessionprocesses.vbs  

527b0068fc86c4fd5ff97ad78d32cbd1


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs ComputerName
2.0 guest

3282 2024-06-08 03:57 audit.vbs  

15d55b48219e0b14efa29f7d9c8fe885


[C] All Process task schedule Downloader Antivirus [C] OS Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P Anti_VM AntiDebug AntiVM WMI malicious URLs ComputerName
1.8 3 guest

3283 2024-06-08 03:54 wmifiletypesearchexe.vbs  

b7f5a16836f71574484136e77415ca4b


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM unpack itself malicious URLs ComputerName crashed
1.6 1 guest

3284 2024-06-08 03:51 wmifiletypesearchexe.vbs  

b7f5a16836f71574484136e77415ca4b


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs ComputerName crashed
1.2 1 guest

3285 2024-06-08 03:50 OpenAuditPC-Scan.cmd  

14402d1cf83cf7c3fc19cd733cedcb9e


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P persistence AntiDebug AntiVM unpack itself WriteConsoleW
1.0 guest