Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
45031 2024-06-08 03:41 OpenAudit-nmap-NetzScan.cmd  

62678f71bb1fb7f0803191f69ed73acc


task schedule Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P persistence AntiDebug AntiVM unpack itself WriteConsoleW
1.0 guest

45032 2024-06-08 03:43 OpenAuditPC-Scan.cmd  

14402d1cf83cf7c3fc19cd733cedcb9e


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P persistence AntiDebug AntiVM unpack itself WriteConsoleW
1.0 guest

45033 2024-06-08 03:45 open-audit-console.lnk  

6c610e0cea36418b10e25b6575e7c324


Generic Malware Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM Lnk Format GIF Format Code Injection Creates shortcut suspicious process WriteConsoleW
2.0 guest

45034 2024-06-08 03:47 open-audit-console.lnk  

6c610e0cea36418b10e25b6575e7c324


Generic Malware task schedule Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM Lnk Format GIF Format Code Injection Creates shortcut suspicious process WriteConsoleW
2.0 guest

45035 2024-06-08 03:48 terminalsessionprocesses.vbs  

527b0068fc86c4fd5ff97ad78d32cbd1


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs ComputerName
2.0 guest

45036 2024-06-08 03:50 OpenAuditPC-Scan.cmd  

14402d1cf83cf7c3fc19cd733cedcb9e


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P persistence AntiDebug AntiVM unpack itself WriteConsoleW
1.0 guest

45037 2024-06-08 03:51 wmifiletypesearchexe.vbs  

b7f5a16836f71574484136e77415ca4b


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs ComputerName crashed
1.2 1 guest

45038 2024-06-08 03:54 wmifiletypesearchexe.vbs  

b7f5a16836f71574484136e77415ca4b


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM unpack itself malicious URLs ComputerName crashed
1.6 1 guest

45039 2024-06-08 03:57 audit.vbs  

15d55b48219e0b14efa29f7d9c8fe885


[C] All Process task schedule Downloader Antivirus [C] OS Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P Anti_VM AntiDebug AntiVM WMI malicious URLs ComputerName
1.8 3 guest

45040 2024-06-08 03:58 terminalsessionprocesses.vbs  

527b0068fc86c4fd5ff97ad78d32cbd1


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs ComputerName
2.0 guest

45041 2024-06-08 04:00 oaclientside.cmd  

008780c9a914156a8190fbfb852fb9c3


task schedule Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P persistence AntiDebug AntiVM unpack itself WriteConsoleW
1.0 guest

45042 2024-06-08 04:01 Openaudit-Clientscan.lnk  

afa017bc06e99f342bcabf241ef1a631


Generic Malware Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM Lnk Format GIF Format Creates shortcut unpack itself malicious URLs WriteConsoleW
1.8 guest

45043 2024-06-08 04:03 oaclientside.cmd  

008780c9a914156a8190fbfb852fb9c3


task schedule Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P persistence AntiDebug AntiVM unpack itself WriteConsoleW
1.0 guest

45044 2024-06-08 04:03 openaudit-win7firewall-enabler...  

4d8d32c0abb989f4734a4cf69d8714c7


task schedule Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM Windows utilities malicious URLs WriteConsoleW Windows
1.4 guest

45045 2024-06-08 04:04 Openaudit-Clientscan.lnk  

afa017bc06e99f342bcabf241ef1a631


Generic Malware Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM Lnk Format GIF Format Creates shortcut unpack itself malicious URLs WriteConsoleW
1.8 guest