Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
45091 2024-06-08 04:42 commented-audit.vbs  

764de5d0c07bc7b8eb0dc2fc5b118b4a


[C] All Process Downloader Antivirus [C] OS Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P Anti_VM AntiDebug AntiVM malicious URLs crashed
1.0 guest

45092 2024-06-08 04:44 TestEmail.vbs  

8a2e07d92b5d973daa5235180a6ebab2


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM unpack itself malicious URLs crashed
1.4 guest

45093 2024-06-08 04:47 vbrunas.vbs  

0c8b0a86c4471f075663aa5b6227d5bb


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM unpack itself malicious URLs crashed
1.4 guest

45094 2024-06-08 04:48 libeay32.dll  

e942a22f2fa3a0156f1a0447681761e1


PE64 PE File DLL PDB
0.2 guest

45095 2024-06-08 04:54 startservices.cmd  

cae3961f999cc4885834fd3a5dec3f09


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM Windows utilities WriteConsoleW Windows
1.0 guest

45096 2024-06-08 04:55 vbrunas.vbs  

0c8b0a86c4471f075663aa5b6227d5bb


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM unpack itself malicious URLs crashed
1.4 guest

45097 2024-06-08 04:56 mysql_installservice-win10.cmd  

c3f725b9691259bd095bff47aa0ab077


task schedule Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P Hijack Network AntiDebug AntiVM Windows utilities WriteConsoleW Windows
1.0 guest

45098 2024-06-08 04:57 stopservices.cmd  

ca1880f2d6fb1b32595c049c9d7dc1db


Downloader task schedule Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM Windows utilities WriteConsoleW Windows
1.0 guest

45099 2024-06-08 04:59 apache_installservice-win10.cm...  

5c308e4bc6c970a6b3fa3db951b6ac1e


task schedule Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P Hijack Network AntiDebug AntiVM Windows utilities WriteConsoleW Windows
1.0 guest

45100 2024-06-08 04:59 apache_uninstallservice-win10....  

9c1c5aa0b87f0183713f5904656a1ef8


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM Windows utilities WriteConsoleW Windows
1.0 guest

45101 2024-06-08 05:00 audit.vbs  

15d55b48219e0b14efa29f7d9c8fe885


[C] All Process task schedule Downloader Antivirus [C] OS Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P Anti_VM AntiDebug AntiVM WMI malicious URLs ComputerName
1.8 guest

45102 2024-06-08 05:00 OpenAuditPC-Scan.cmd  

14402d1cf83cf7c3fc19cd733cedcb9e


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P persistence AntiDebug AntiVM unpack itself WriteConsoleW
1.0 guest

45103 2024-06-08 05:01 stopservices.cmd  

ca1880f2d6fb1b32595c049c9d7dc1db


Downloader task schedule Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM Windows utilities WriteConsoleW Windows
1.0 guest

45104 2024-06-08 05:01 firewall-win10-open-oa.cmd  

c14d829053bc52e0df45f97cfa6913ac


Downloader task schedule Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API FTP KeyLogger P2P AntiDebug AntiVM Windows utilities WriteConsoleW Firewall state off Windows
1.6 guest

45105 2024-06-08 05:02 open-audit-console.lnk  

6c610e0cea36418b10e25b6575e7c324


Generic Malware task schedule Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM Lnk Format GIF Format Code Injection Creates shortcut suspicious process WriteConsoleW
2.0 guest