Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
46936 2020-07-31 15:48 2xp2t9649.exe  

dedaa6e9be869d05d710493436323d42


VirusTotal Malware Malicious Traffic unpack itself sandbox evasion Windows Advertising ComputerName DNS Cryptographic key
1 1 5.0 14

46937 2020-07-31 15:47 http://www.nalara1220.o-r.kr  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files unpack itself Windows utilities malicious URLs Windows DNS
6 2 3.6

46938 2020-07-31 15:31 2xp2t9649.exe  

dedaa6e9be869d05d710493436323d42


VirusTotal Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName DNS Cryptographic key
1 1 6.4 14

46939 2020-07-31 15:30 http://www.nalara1220.o-r.kr  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files unpack itself Windows utilities Windows DNS
6 2 3.2

46940 2020-07-31 15:28 2xp2t9649.exe  

dedaa6e9be869d05d710493436323d42


VirusTotal Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName DNS Cryptographic key
1 1 6.4 14

46941 2020-07-31 15:28 http://www.nalara1220.o-r.kr  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files unpack itself Windows utilities Windows DNS
6 2 3.2

46942 2020-07-31 15:22 2xp2t9649.exe  

dedaa6e9be869d05d710493436323d42


VirusTotal Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName DNS Cryptographic key
1 1 6.4 14

46943 2020-07-31 15:20 http://www.nalara1220.o-r.kr  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows DNS
6 2 3.6

46944 2020-07-31 15:18 http://www.nalara1220.o-r.kr  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files unpack itself Windows utilities Windows DNS
6 2 3.2

46945 2020-07-31 15:08 2xp2t9649.exe  

dedaa6e9be869d05d710493436323d42


VirusTotal Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName DNS Cryptographic key
1 1 5.8 14

46946 2020-07-31 15:07 http://www.nalara1220.o-r.kr  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files unpack itself Windows utilities Windows DNS
6 2 3.2

46947 2020-07-31 14:50 2xp2t9649.exe  

dedaa6e9be869d05d710493436323d42


VirusTotal Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName DNS Cryptographic key
1 1 5.8 14

46948 2020-07-31 14:49 http://www.nalara1220.o-r.kr  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files unpack itself Windows utilities Windows DNS
6 2 3.2

46949 2020-07-31 14:47 2xp2t9649.exe  

dedaa6e9be869d05d710493436323d42


VirusTotal Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName DNS Cryptographic key
1 1 6.4 14

46950 2020-07-31 14:45 http://www.nalara1220.o-r.kr  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files unpack itself Windows utilities Windows DNS
6 2 3.2