Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
45871 2020-10-28 09:03 CtjEwdljmr.exe  

81f9fa473a516670504b796b8ae63d6b


Malware Malicious Traffic RWX flags setting unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName DNS Cryptographic key
1 2 6.4 guest

45872 2020-10-28 08:07 http://jiehost.com/wp-admin/6Z...  

fe40bfc067dd10f30aae16fc5bb543f3


Malware AutoRuns Code Injection Malicious Traffic Creates executable files RWX flags setting exploit crash unpack itself Windows utilities Auto service malicious URLs AntiVM_Disk sandbox evasion VM Disk Size Check human activity check Windows Exploit Advertising ComputerName DNS Cryptographic key crashed
2 5 2 12.8 M guest

45873 2020-10-28 07:47 http://www.josejuanarroyo.com/...  

2e9b6b2fd1f6f1a4e7f9df6b0aefb6bb


VirusTotal Malware AutoRuns Code Injection Malicious Traffic Creates executable files RWX flags setting exploit crash unpack itself Windows utilities Auto service malicious URLs AntiVM_Disk sandbox evasion VM Disk Size Check human activity check Windows Exploit Advertising ComputerName DNS Cryptographic key crashed
2 4 2 12.2 guest

45874 2020-10-28 07:40 http://oreillyautolawsuit.com/...  

0c4816564a04182f082efe99506f5f94


VirusTotal Malware Code Injection Creates executable files exploit crash unpack itself Windows utilities Windows Exploit DNS crashed Downloader
1 3 2 4.6 guest

45875 2020-10-28 07:37 http://103.153.79.195/0pp.exe  

605eef77a212754b476a215f3b6c02f7


VirusTotal Malware Buffer PE suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files exploit crash unpack itself Windows utilities malicious URLs Windows Exploit DNS crashed
2 5 3 11.8 M guest

45876 2020-10-27 18:23 rep_0HHSEI8DAP5IFU0.doc  

f0ff84c95b97ee41cf9869d9bc25eb15


Vulnerability VirusTotal Malware Malicious Traffic unpack itself malicious URLs Tofsee DNS
4 10 1 6.0 M 19 guest

45877 2020-10-27 18:19 FILE-2020_10_27-YE455729.doc  

e6df4c6ce89b90689352e5f18778cd5d


Vulnerability VirusTotal Malware Report Malicious Traffic unpack itself malicious URLs Tofsee Windows DNS
3 6 5 6.0 19 guest

45878 2020-10-27 18:17 mT2cge6ejFx20w3Hu.exe  

f583ada80565e37b45785f7e35e2bec2


Malware Report Malicious Traffic RWX flags setting unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName DNS Cryptographic key
1 2 1 6.4 guest

45879 2020-10-27 18:14 kung.exe  

45bfc424046b617fe8d016e34e047c0a


Browser Info Stealer LokiBot Malware download FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware c&c suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself malicious URLs installed browsers check Browser Email ComputerName Trojan DNS Software
1 2 10 12.8 M 31 guest

45880 2020-10-27 17:59 muo4guvow.jpg.exe  

a84721e4044bb7cef292b2e46393dc24


VirusTotal Malware unpack itself malicious URLs crashed
2.2 11 guest

45881 2020-10-27 17:57 zzf.exe  

db6c083fb31ee45ab0dcfb438d15e411


PDB
0.6 guest

45882 2020-10-27 17:57 U86GkXRRov.exe  

b86e39e2efa1d7739534e74d194d06eb


Malware Malicious Traffic RWX flags setting unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName DNS Cryptographic key
1 1 5.4 guest

45883 2020-10-27 17:42 Fsl2uw.exe  

f8e613f97dfaad6b5e4f25aa9c9a52e5


VirusTotal Malware Malicious Traffic RWX flags setting unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName DNS Cryptographic key
1 1 5.8 6 admin

45884 2020-10-27 17:41 joj.exe  

75c4f2a3e9f895a4d684e41edbc665b6


Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware AutoRuns suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces malicious URLs IP Check Tofsee Ransomware Windows Browser Tor Email ComputerName Cryptographic key Software crashed keylogger
2 4 1 15.4 M 39 admin

45885 2020-10-27 17:34 joj.exe  

75c4f2a3e9f895a4d684e41edbc665b6


VirusTotal Malware AutoRuns suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces malicious URLs IP Check Tofsee Ransomware Windows Tor ComputerName crashed
2 2 1 12.0 M 39 guest