Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
3286 2024-06-08 03:48 terminalsessionprocesses.vbs  

527b0068fc86c4fd5ff97ad78d32cbd1


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs ComputerName
2.0 guest

3287 2024-06-08 03:47 open-audit-console.lnk  

6c610e0cea36418b10e25b6575e7c324


Generic Malware task schedule Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM Lnk Format GIF Format Code Injection Creates shortcut suspicious process WriteConsoleW
2.0 guest

3288 2024-06-08 03:45 open-audit-console.lnk  

6c610e0cea36418b10e25b6575e7c324


Generic Malware Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM Lnk Format GIF Format Code Injection Creates shortcut suspicious process WriteConsoleW
2.0 guest

3289 2024-06-08 03:43 OpenAuditPC-Scan.cmd  

14402d1cf83cf7c3fc19cd733cedcb9e


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P persistence AntiDebug AntiVM unpack itself WriteConsoleW
1.0 guest

3290 2024-06-08 03:41 OpenAudit-nmap-NetzScan.cmd  

62678f71bb1fb7f0803191f69ed73acc


task schedule Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P persistence AntiDebug AntiVM unpack itself WriteConsoleW
1.0 guest

3291 2024-06-08 03:37 makecert2.cmd  

dc399dc9986b37e8e48fc2a61f9cfcac


Downloader task schedule Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P Hijack Network AntiDebug AntiVM Windows utilities WriteConsoleW Windows
1.0 guest

3292 2024-06-08 03:37 firewall-win10-open-oa.cmd  

c14d829053bc52e0df45f97cfa6913ac


Downloader task schedule Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM Windows utilities malicious URLs WriteConsoleW Firewall state off Windows
2.0 guest

3293 2024-06-08 03:37 OpenAudit-nmap-NetzScan.cmd  

62678f71bb1fb7f0803191f69ed73acc


task schedule Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM WriteConsoleW
0.6 guest

3294 2024-06-08 03:36 startservices.cmd  

cae3961f999cc4885834fd3a5dec3f09


task schedule Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM Windows utilities WriteConsoleW Windows
1.0 guest

3295 2024-06-08 03:36 apache_uninstallservice-win10....  

9c1c5aa0b87f0183713f5904656a1ef8


Downloader task schedule Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM Windows utilities WriteConsoleW Windows
1.0 guest

3296 2024-06-08 03:35 apache_installservice-win10.cm...  

5c308e4bc6c970a6b3fa3db951b6ac1e


task schedule Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P Hijack Network AntiDebug AntiVM Windows utilities WriteConsoleW Windows
1.0 guest

3297 2024-06-08 03:32 makecert2.cmd  

dc399dc9986b37e8e48fc2a61f9cfcac


Downloader task schedule Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P Hijack Network AntiDebug AntiVM Windows utilities WriteConsoleW Windows
1.0 guest

3298 2024-06-08 03:31 stopservices.cmd  

ca1880f2d6fb1b32595c049c9d7dc1db


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM Windows utilities WriteConsoleW Windows
1.0 guest

3299 2024-06-08 03:30 stopservices.cmd  

ca1880f2d6fb1b32595c049c9d7dc1db


Downloader task schedule Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM Windows utilities WriteConsoleW Windows
1.0 guest

3300 2024-06-08 03:25 startservices.cmd  

cae3961f999cc4885834fd3a5dec3f09


task schedule Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM Windows utilities WriteConsoleW Windows
1.0 guest