Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
49066 2020-07-09 17:03 http://91.198.220.225/microsof...  

489f36c666847f46e05370a3ec37566f


VirusTotal Malware Code Injection Malicious Traffic Creates executable files unpack itself Windows utilities Windows DNS
1 1 4.6 M

49067 2020-07-09 17:02 http://veyron.ir/gregx/frankx....  

87712606fb9aaef0299a5ec915de4544


VirusTotal Malware Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows
1 3 4.6 M

49068 2020-07-09 16:55 Opencapture v7.0 Setup.exe  

c534ef899cd8782854db5409ac807e97


Check memory Checks debugger Creates executable files unpack itself AppData folder malicious URLs
3.6

49069 2020-07-09 16:52 http://91.198.220.225/microsof...  

489f36c666847f46e05370a3ec37566f


VirusTotal Malware Code Injection Malicious Traffic Creates executable files unpack itself Windows utilities Windows DNS
1 1 4.6 M

49070 2020-07-09 16:50 http://veyron.ir/gregx/frankx....  

87712606fb9aaef0299a5ec915de4544


VirusTotal Malware Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows
1 3 5.0 M

49071 2020-07-09 16:46 http://veyron.ir/gregx/frankx....  

87712606fb9aaef0299a5ec915de4544


VirusTotal Malware Code Injection buffers extracted Creates executable files exploit crash unpack itself Windows utilities AppData folder malicious URLs sandbox evasion Windows Exploit crashed
2 5 9.6 M 49

49072 2020-07-09 16:27 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files ICMP traffic RWX flags setting unpack itself Windows utilities AppData folder malicious URLs AntiVM_Disk sandbox evasion Firewall state off VM Disk Size Check human activity check installed browsers check Ransomware Interception Windows Browser ComputerName keylogger
7 6 13.6 M

49073 2020-07-09 14:56 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files ICMP traffic RWX flags setting exploit crash unpack itself Windows utilities AppData folder malicious URLs AntiVM_Disk sandbox evasion Firewall state off VM Disk Size Check human activity check installed browsers check Ransomware Interception Windows Exploit Browser ComputerName DNS crashed
8 9 15.2 M

49074 2020-07-09 14:05 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files ICMP traffic RWX flags setting exploit crash unpack itself Windows utilities AppData folder malicious URLs AntiVM_Disk sandbox evasion Firewall state off VM Disk Size Check human activity check installed browsers check Ransomware Interception Windows Exploit Browser ComputerName DNS crashed
8 9 15.2 M

49075 2020-07-09 13:58 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware Code Injection Check memory Creates executable files exploit crash unpack itself Windows utilities AppData folder malicious URLs Windows Exploit crashed
105 21 6.0 M

49076 2020-07-09 13:42 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware Code Injection Creates executable files exploit crash unpack itself Windows utilities Windows Exploit crashed
4 7 3.6 M

49077 2020-07-09 12:52 https://v3clinic.ahnlab.com/v3...  

95d90fe4a005314def24a402cf134c65


Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows
65 21 3.0 M

49078 2020-07-09 12:52 https://v3clinic.ahnlab.com/v3...  

95d90fe4a005314def24a402cf134c65


Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows
80 20 3.0 M

49079 2020-07-09 12:52 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


VirusTotal Malware Code Injection Creates executable files unpack itself Windows utilities AppData folder Windows
3 4 3.4 M

49080 2020-07-09 12:47 https://v3clinic.ahnlab.com/v3...  

95d90fe4a005314def24a402cf134c65


unpack itself Windows utilities Windows DNS
4 1.4