Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
3496 2025-01-22 18:28 !Channel-Name_Provider-Name_Ev...  

ac470778fbe051d5daa6b53b5aa7808c


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Tofsee Windows DNS
2 4.2 guest

3497 2025-01-22 18:27 !Channel-Name_Provider-Name_Ev...  

788a4bcb14c88a37a07f512f4a55803a


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Tofsee Windows DNS
2 5.2 guest

3498 2025-01-22 18:25 Application_CarbonBlackDefense...  

0a391048d5fcfa3fab27fffbb846765f


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Tofsee Windows DNS
2 4.2 guest

3499 2025-01-22 18:24 !!!!README.md  

d29ecd4233ef8075c1aacd944268f1e9


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Tofsee Windows DNS
2 3.6 guest

3500 2025-01-22 18:24 Application_Application-Hang_1...  

355e78ca63b3fbbb551f34aae51097a2


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Tofsee Windows DNS
2 4.2 guest

3501 2025-01-22 18:23 Application_Application-Error_...  

46753b086f1a65c077238dfedd93c4ea


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Tofsee Windows DNS
2 4.2 guest

3502 2025-01-22 18:22 adPWDManager_adPWDManager_110....  

c6fe1e273411bd4ab6adfdd95568b388


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Tofsee Windows DNS
2 3.6 guest

3503 2025-01-22 18:21 !Channel-Name_Provider-Name_Ev...  

ac470778fbe051d5daa6b53b5aa7808c


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Tofsee Windows DNS
2 4.8 guest

3504 2025-01-22 18:21 EvtxECmd.exe  

4d53b493b69b8866491aefece838269f


Generic Malware Downloader Malicious Library .NET framework(MSIL) Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP SMTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM PE File .NET PDB Check memory Checks debugger unpack itself malicious URLs Windows Cryptographic key
2.4 guest

3505 2025-01-22 18:21 !Channel-Name_Provider-Name_Ev...  

788a4bcb14c88a37a07f512f4a55803a


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Tofsee Windows DNS
2 4.2 guest

3506 2025-01-22 18:20 !!!!README.md  

d29ecd4233ef8075c1aacd944268f1e9


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Tofsee Windows DNS
2 3.6 guest

3507 2025-01-22 18:19 37_Website.xhtml  

203c4b0701cc0a62b99bcd4f02d20f92


Generic Malware Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Tofsee Windows DNS
2 4.2 guest

3508 2025-01-22 18:18 EvtxECmd.exe  

4d53b493b69b8866491aefece838269f


Generic Malware Downloader Malicious Library .NET framework(MSIL) Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP SMTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM PE File .NET PDB MachineGuid Check memory Checks debugger unpack itself malicious URLs Windows Cryptographic key
2.6 guest

3509 2025-01-22 18:17 35_Acknowledgments.xhtml  

e3d922879d71e8f5ff32e9de0c60b02c


Generic Malware Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Tofsee Windows DNS
2 4.2 guest

3510 2025-01-22 18:17 36_About.xhtml  

6a1234b7268b063a61ea886849c71213


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting unpack itself Windows utilities malicious URLs Tofsee Windows DNS
2 3.6 guest