Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
47401 2020-07-20 13:23 index.doc  

b60e35e93dbbbc16b3e578ec6645c562


Vulnerability VirusTotal Malware Malicious Traffic unpack itself Tofsee Windows DNS
7 10 3 6.0 M 37

47402 2020-07-20 13:09 http://www.nalara1220.o-r.kr  

c032bb944d6fba21799bd5a4df5b6122


Dridex Malware Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
11 3 3 4.6

47403 2020-07-20 12:35 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware Code Injection Check memory Creates executable files exploit crash unpack itself Windows utilities AppData folder malicious URLs AntiVM_Disk Firewall state off VM Disk Size Check Tofsee Windows Exploit DNS crashed
3 2 1 7.6

47404 2020-07-20 12:29 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files ICMP traffic RWX flags setting exploit crash unpack itself Windows utilities AppData folder malicious URLs AntiVM_Disk sandbox evasion Firewall state off VM Disk Size Check human activity check installed browsers check Tofsee Ransomware Interception Windows Exploit Browser ComputerName DNS crashed
8 4 2 14.8

47405 2020-07-20 11:40 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted heapspray Creates shortcut Creates executable files ICMP traffic RWX flags setting exploit crash unpack itself Windows utilities AppData folder malicious URLs AntiVM_Disk sandbox evasion Firewall state off VM Disk Size Check human activity check installed browsers check Tofsee Ransomware Interception Windows Exploit Browser ComputerName DNS crashed
8 4 2 15.4

47406 2020-07-20 11:31 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware Code Injection Check memory Creates executable files exploit crash unpack itself Windows utilities AppData folder malicious URLs Tofsee Windows Exploit DNS crashed
3 2 2 6.6

47407 2020-07-20 11:21 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted heapspray Creates shortcut Creates executable files ICMP traffic exploit crash unpack itself Windows utilities AppData folder malicious URLs AntiVM_Disk sandbox evasion Firewall state off VM Disk Size Check human activity check installed browsers check Tofsee Ransomware Interception Windows Exploit Browser ComputerName DNS crashed
7 5 2 15.0

47408 2020-07-20 11:14 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware Code Injection Check memory Creates executable files RWX flags setting exploit crash unpack itself Windows utilities AppData folder malicious URLs Windows Exploit DNS crashed
3 2 7.0

47409 2020-07-20 10:55 https://www.naver.com  

3a4ec0c8e51d89dfc8f7ecd45aaa13fa


Dridex Malware Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
142 8 36 4.6

47410 2020-07-20 10:32 https://www.naver.com  

1c0ba832c516b1fb05a08c69fea96f94


Dridex Malware Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
150 9 37 4.6

47411 2020-07-20 10:17 https://www.naver.com  

90a331f9ffcb686ee11f0e67ee073e57


Dridex Malware Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
141 9 39 4.6

47412 2020-07-20 10:07 https://www.naver.com  

c542f4f30dd5e5360ddeeb6bc0432f55


Code Injection heapspray Creates executable files unpack itself Windows utilities malicious URLs Tofsee Windows
34 3.2

47413 2020-07-20 09:59 https://www.naver.com  

8a920a34010cb1fb427f65e440620e60


Dridex Malware Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit crashed
37 3.6

47414 2020-07-20 09:49 http://tedec.com/dl/webupdate....  

22cc193a547944f685e79c52acc235a2


VirusTotal Malware Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files exploit crash unpack itself Windows utilities AppData folder malicious URLs Windows Exploit DNS crashed Password
10 2 3 11.2 M 26

47415 2020-07-20 09:45 tesseract-ocr-w64-setup-v5.0.0...  

42b41c07df3890dc9e9c1bb1908585cc


VirusTotal Malware MachineGuid Creates shortcut AppData folder malicious URLs installed browsers check Browser
3.0 2