Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
45421 2020-11-12 13:00 b.exe  

268f6a197a208cca3d28c81059a0267d


Code Injection Checks debugger buffers extracted RWX flags setting unpack itself malicious URLs ComputerName Remote Code Execution DNS
2 9.0 admin

45422 2020-11-12 12:59 b.exe  

268f6a197a208cca3d28c81059a0267d


Code Injection Checks debugger buffers extracted RWX flags setting unpack itself malicious URLs ComputerName Remote Code Execution DNS
1 9.0 admin

45423 2020-11-12 12:56 b.exe  

268f6a197a208cca3d28c81059a0267d


Code Injection Checks debugger buffers extracted RWX flags setting unpack itself malicious URLs ComputerName Remote Code Execution DNS
1 9.0 admin

45424 2020-11-12 12:54 b.exe  

268f6a197a208cca3d28c81059a0267d


Code Injection Checks debugger buffers extracted RWX flags setting unpack itself malicious URLs ComputerName Remote Code Execution DNS
1 9.0 admin

45425 2020-11-12 12:52 b.exe  

268f6a197a208cca3d28c81059a0267d


Code Injection Checks debugger buffers extracted RWX flags setting unpack itself malicious URLs ComputerName Remote Code Execution DNS
2 9.0 admin

45426 2020-11-12 12:51 b.exe  

268f6a197a208cca3d28c81059a0267d


Code Injection Checks debugger buffers extracted RWX flags setting unpack itself malicious URLs ComputerName Remote Code Execution DNS
1 9.0 admin

45427 2020-11-12 12:48 b.exe  

268f6a197a208cca3d28c81059a0267d


Code Injection Checks debugger buffers extracted RWX flags setting unpack itself malicious URLs ComputerName Remote Code Execution DNS
1 9.0 admin

45428 2020-11-12 12:43 b.exe  

268f6a197a208cca3d28c81059a0267d


Code Injection Checks debugger buffers extracted RWX flags setting unpack itself malicious URLs ComputerName Remote Code Execution DNS
1 9.0 admin

45429 2020-11-12 11:42 북한의 지역산업역량과 협력방안에 대한 전문가 의견조사서...  

777a8fb3f6f6a8a555ed1a69a7366abe


Checks debugger Creates shortcut Creates executable files unpack itself malicious URLs
2.2 admin

45430 2020-11-12 11:11 b.exe  

268f6a197a208cca3d28c81059a0267d


Code Injection Checks debugger buffers extracted RWX flags setting unpack itself malicious URLs ComputerName Remote Code Execution DNS
1 9.0 SFPark

45431 2020-11-12 10:35 axcjgfhwvvas.exe  

a7bb277ebea155081e10479495249ad7


Browser Info Stealer Malware download Vidar VirusTotal Email Client Info Stealer Malware Cryptocurrency wallets Cryptocurrency suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates executable files ICMP traffic unpack itself Windows utilities Collect installed applications Check virtual network interfaces suspicious process AppData folder malicious URLs WriteConsoleW anti-virtualization installed browsers check OskiStealer Stealer Windows Browser Email ComputerName
11 3 7 20.6 M 45 SFPark

45432 2020-11-12 10:29 4574557.png.exe  

c308c403c6d11d554dedd806fdd6313e


AutoRuns Code Injection Check memory buffers extracted unpack itself Windows utilities Detects VMWare suspicious process malicious URLs sandbox evasion WriteConsoleW VMware Windows Browser ComputerName crashed
9.0 SFPark

45433 2020-11-12 09:57 5.exe  

f139bcd08ad8da406f7dd25411d1c9b3


VirusTotal Malware unpack itself malicious URLs
2.8 M 60 admin

45434 2020-11-12 09:56 5.exe  

f139bcd08ad8da406f7dd25411d1c9b3


VirusTotal Malware unpack itself malicious URLs
2.8 M 60 admin

45435 2020-11-12 09:54 5.exe  

f139bcd08ad8da406f7dd25411d1c9b3


VirusTotal Malware unpack itself malicious URLs
2.8 M 60 admin