Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
47416 2020-07-15 18:00 http://175.208.134.150:8005/an...  

5f6cc537fbd7613043e723e770e732e7


Code Injection unpack itself Windows utilities malicious URLs Windows DNS
18 3 3.8 M

47417 2020-07-15 17:41 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files ICMP traffic RWX flags setting unpack itself Windows utilities AppData folder malicious URLs AntiVM_Disk sandbox evasion Firewall state off VM Disk Size Check human activity check installed browsers check Ransomware Interception Windows Browser ComputerName DNS
8 5 13.6 M

47418 2020-07-15 16:39 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files ICMP traffic RWX flags setting unpack itself Windows utilities AppData folder malicious URLs AntiVM_Disk sandbox evasion Firewall state off VM Disk Size Check human activity check installed browsers check Ransomware Interception Windows Browser ComputerName DNS
8 5 13.6 M

47419 2020-07-15 16:32 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files ICMP traffic RWX flags setting unpack itself Windows utilities AppData folder malicious URLs AntiVM_Disk sandbox evasion Firewall state off VM Disk Size Check human activity check installed browsers check Ransomware Interception Windows Browser ComputerName DNS
8 5 13.6 M

47420 2020-07-15 13:50 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files ICMP traffic RWX flags setting unpack itself Windows utilities AppData folder malicious URLs AntiVM_Disk sandbox evasion Firewall state off VM Disk Size Check human activity check installed browsers check Ransomware Interception Windows Browser ComputerName DNS
8 5 13.6 M

47421 2020-07-15 13:41 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware
0.4

47422 2020-07-15 13:40 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware Code Injection Creates executable files unpack itself Windows utilities AppData folder Windows DNS
3 2 4.0 M

47423 2020-07-15 13:33 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware Code Injection Creates executable files unpack itself Windows utilities Windows DNS
3 3 3.6 M

47424 2020-07-15 13:25 k4y7tzx4ry.doc  

4e046e4093be0c049abdbb50e2fb6262


Vulnerability VirusTotal Malware Malicious Traffic unpack itself DNS
4 5 4.4 M 46

47425 2020-07-15 11:59 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware Code Injection Creates executable files unpack itself Windows utilities Windows
5 12 4.6 M

47426 2020-07-15 11:51 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware
0.4

47427 2020-07-15 11:50 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware
0.4

47428 2020-07-15 11:50 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware
0.4

47429 2020-07-15 11:41 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware Code Injection Creates executable files exploit crash unpack itself Windows utilities Windows Exploit DNS crashed
4 3 4.2 M

47430 2020-07-15 11:25 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware
0.4