Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
44056 2021-01-06 15:17 ZyItXvsE7HAYNVDosaf9.dll  

54137e29f5a9215a5149a8a500713bb7


VirusTotal Malware PDB Malicious Traffic Checks debugger buffers extracted RWX flags setting unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName DNS Cryptographic key crashed
1 1 1 7.8 M 21 ZeroCERT

44057 2021-01-06 15:17 bQMEU4cxOsvWqLu.dll  

10da945d47add24cb0a8772a6d377cfa


VirusTotal Malware PDB suspicious privilege Malicious Traffic Checks debugger buffers extracted Creates shortcut RWX flags setting unpack itself malicious URLs AntiVM_Disk sandbox evasion VM Disk Size Check installed browsers check Windows Browser Advertising ComputerName DNS Cryptographic key
1 1 1 8.4 M 21 ZeroCERT

44058 2021-01-06 15:10 t01.exe  

13b933ccb839a2ec8f0819c10ffd07e5


VirusTotal Malware Buffer PE PDB suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates executable files RWX flags setting unpack itself Windows utilities Check virtual network interfaces suspicious process AppData folder malicious URLs suspicious TLD sandbox evasion WriteConsoleW Tofsee Windows Browser ComputerName DNS crashed
19 23 4 21.0 M 52 ZeroCERT

44059 2021-01-06 15:07 svchost.exe  

652933b7afdca42443a2e1dfff9d1f86


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself suspicious process malicious URLs
1 8.8 M 41 ZeroCERT

44060 2021-01-06 15:01 ur8OY9q.dll  

abaa79f4507f407c45a7be571488ef38


VirusTotal Malware PDB suspicious privilege Malicious Traffic Checks debugger buffers extracted Creates shortcut RWX flags setting unpack itself malicious URLs AntiVM_Disk sandbox evasion VM Disk Size Check human activity check installed browsers check Windows Browser Advertising ComputerName DNS Cryptographic key
1 1 1 8.8 M 23 ZeroCERT

44061 2021-01-06 14:59 QPR-3067.exe  

1d11abb9dac9b15823d1bcad2b8b3675


Browser Info Stealer LokiBot Malware download FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware c&c Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Windows utilities suspicious process malicious URLs AntiVM_Disk VM Disk Size Check installed browsers check Windows Browser Email ComputerName DNS Cryptographic key Software
1 7 17.8 M 27 ZeroCERT

44062 2021-01-06 14:57 nmode.exe  

4abfa113c1177d7123f6e7974cb55824


VirusTotal Malware unpack itself
2.6 M 26 ZeroCERT

44063 2021-01-06 14:50 JwwiQ.dll  

de04eb856b0b4b5efd8fed0fb99ccb79


VirusTotal Malware PDB Malicious Traffic Checks debugger buffers extracted Creates shortcut RWX flags setting unpack itself malicious URLs sandbox evasion installed browsers check Windows Browser Advertising ComputerName DNS Cryptographic key
1 7.6 M 26 ZeroCERT

44064 2021-01-06 14:50 BavwKzfNo6hxk.dll  

9d7b87ffd95d99fd6116b9903905ed5d


VirusTotal Malware PDB suspicious privilege Malicious Traffic Checks debugger buffers extracted Creates shortcut RWX flags setting unpack itself malicious URLs AntiVM_Disk sandbox evasion VM Disk Size Check installed browsers check Windows Browser Advertising ComputerName DNS Cryptographic key crashed
1 1 1 9.2 M 24 ZeroCERT

44065 2021-01-06 14:42 M21Y.dll  

e8321185b16458d8b3c0bbbbcf1f4c83


VirusTotal Malware PDB Checks debugger RWX flags setting unpack itself sandbox evasion
3.8 36 조광섭

44066 2021-01-06 14:39 BavwKzfNo6hxk.dll  

9d7b87ffd95d99fd6116b9903905ed5d


VirusTotal Malware PDB suspicious privilege Malicious Traffic Checks debugger buffers extracted Creates shortcut RWX flags setting unpack itself malicious URLs AntiVM_Disk sandbox evasion VM Disk Size Check human activity check installed browsers check Windows Browser Advertising ComputerName DNS Cryptographic key
1 1 8.8 M 24 조광섭

44067 2021-01-06 14:17 BavwKzfNo6hxk.dll  

9d7b87ffd95d99fd6116b9903905ed5d


VirusTotal Malware PDB Check memory crashed
2.2 M 24 조광섭

44068 2021-01-06 14:15 BavwKzfNo6hxk.dll  

9d7b87ffd95d99fd6116b9903905ed5d


VirusTotal Malware PDB
1.8 M 24 조광섭

44069 2021-01-06 14:13 M21Y.dll  

e8321185b16458d8b3c0bbbbcf1f4c83


VirusTotal Malware PDB
2.0 36 조광섭

44070 2021-01-06 14:09 M21Y.dll  

e8321185b16458d8b3c0bbbbcf1f4c83


VirusTotal Malware PDB
2.0 36 조광섭