Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
47551 2020-07-09 12:46 https://cdn1.estsecurity.com/s...  

f809c38f0febca37c04811e2dc51ff8e


Code Injection Creates executable files unpack itself Windows utilities Windows
1 2 2.6 M

47552 2020-07-09 11:59 https://cdn1.estsecurity.com/s...  

f809c38f0febca37c04811e2dc51ff8e


Code Injection Creates executable files unpack itself Windows utilities Windows
1 2 2.6 M

47553 2020-07-09 11:55 https://cdn1.estsecurity.com/s...  

f809c38f0febca37c04811e2dc51ff8e


Code Injection Creates executable files unpack itself Windows utilities Windows
1 4 2.6 M

47554 2020-07-09 10:17 Opencapture v7.0 Setup.exe  

c534ef899cd8782854db5409ac807e97


Malware Code Injection Malicious Traffic Check memory Checks debugger Creates shortcut Creates executable files RWX flags setting unpack itself Windows utilities AppData folder malicious URLs AntiVM_Disk VM Disk Size Check human activity check Windows ComputerName Trojan Banking crashed
4 4 8.6 M

47555 2020-07-09 10:15 Opencapture v7.0 Setup.exe  

c534ef899cd8782854db5409ac807e97


Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger Creates shortcut Creates executable files unpack itself Windows utilities AppData folder malicious URLs AntiVM_Disk VM Disk Size Check human activity check Windows ComputerName Trojan Banking crashed keylogger
10 12 9.0 M

47556 2020-07-09 10:06 QUOTATION_49027352-pdf.exe  

2714c2eac0417bec3b7186c77a5ad059


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut unpack itself suspicious process malicious URLs WriteConsoleW human activity check Windows ComputerName DNS Cryptographic key crashed
1 12.6 41

47557 2020-07-09 10:02 http://91.198.220.225/microsof...  

489f36c666847f46e05370a3ec37566f


VirusTotal Malware suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger Creates executable files unpack itself Windows utilities malicious URLs AntiVM_Disk VM Disk Size Check human activity check Windows ComputerName DNS
1 3 8.8 M

47558 2020-07-09 09:54 http://91.198.220.225/microsof...  

489f36c666847f46e05370a3ec37566f


VirusTotal Malware suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger Creates executable files exploit crash unpack itself Windows utilities malicious URLs AntiVM_Disk VM Disk Size Check human activity check Windows Exploit ComputerName DNS crashed
2 5 10.6 M

47559 2020-07-09 09:48 http://91.198.220.225/microsof...  

489f36c666847f46e05370a3ec37566f


VirusTotal Malware suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger Creates executable files unpack itself Windows utilities AntiVM_Disk VM Disk Size Check Windows ComputerName DNS
1 2 6.4 M

47560 2020-07-09 09:47 http://91.198.220.225/microsof...  

489f36c666847f46e05370a3ec37566f


VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger Creates executable files exploit crash unpack itself Windows utilities malicious URLs AntiVM_Disk VM Disk Size Check human activity check Windows Exploit ComputerName DNS crashed
2 5 10.8 M 24

47561 2020-07-09 08:38 Bill_jule25_proposal2.xls  

fd53d69f88f0b9981cda1c0f1a52b75a


VirusTotal Malware unpack itself malicious URLs
2.2 M 38

47562 2020-07-09 08:37 http://91.198.220.225/microsof...  

489f36c666847f46e05370a3ec37566f


VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger Creates executable files exploit crash unpack itself Windows utilities malicious URLs AntiVM_Disk VM Disk Size Check human activity check Windows Exploit ComputerName DNS crashed
1 4 10.8 M 24

47563 2020-07-09 07:51 http://doorbhai.com/wp-keys.ph...  

7d23bb67055769142aa57e851fe8c83d


VirusTotal Malware Code Injection unpack itself Windows utilities malicious URLs Windows
1 2 3.0 M

47564 2020-07-08 18:19 http://veyron.ir/gregx/frankx....  

87712606fb9aaef0299a5ec915de4544


VirusTotal Malware Code Injection buffers extracted Creates executable files exploit crash unpack itself Windows utilities AppData folder malicious URLs sandbox evasion Windows Exploit crashed
1 2 8.2 M 49

47565 2020-07-08 17:47 https://app.gomtv.com/gom/NEW_...  

cdf0ee07031e51f2fb8648e1abe9f1f4


VirusTotal Malware Code Injection Creates executable files exploit crash unpack itself Windows utilities AppData folder Windows Exploit crashed
1 2 4.0 M 3