Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
49081 2020-07-09 12:46 https://cdn1.estsecurity.com/s...  

f809c38f0febca37c04811e2dc51ff8e


Code Injection Creates executable files unpack itself Windows utilities Windows
1 2 2.6 M

49082 2020-07-09 11:59 https://cdn1.estsecurity.com/s...  

f809c38f0febca37c04811e2dc51ff8e


Code Injection Creates executable files unpack itself Windows utilities Windows
1 2 2.6 M

49083 2020-07-09 11:55 https://cdn1.estsecurity.com/s...  

f809c38f0febca37c04811e2dc51ff8e


Code Injection Creates executable files unpack itself Windows utilities Windows
1 4 2.6 M

49084 2020-07-09 10:17 Opencapture v7.0 Setup.exe  

c534ef899cd8782854db5409ac807e97


Malware Code Injection Malicious Traffic Check memory Checks debugger Creates shortcut Creates executable files RWX flags setting unpack itself Windows utilities AppData folder malicious URLs AntiVM_Disk VM Disk Size Check human activity check Windows ComputerName Trojan Banking crashed
4 4 8.6 M

49085 2020-07-09 10:15 Opencapture v7.0 Setup.exe  

c534ef899cd8782854db5409ac807e97


Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger Creates shortcut Creates executable files unpack itself Windows utilities AppData folder malicious URLs AntiVM_Disk VM Disk Size Check human activity check Windows ComputerName Trojan Banking crashed keylogger
10 12 9.0 M

49086 2020-07-09 10:06 QUOTATION_49027352-pdf.exe  

2714c2eac0417bec3b7186c77a5ad059


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut unpack itself suspicious process malicious URLs WriteConsoleW human activity check Windows ComputerName DNS Cryptographic key crashed
1 12.6 41

49087 2020-07-09 10:02 http://91.198.220.225/microsof...  

489f36c666847f46e05370a3ec37566f


VirusTotal Malware suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger Creates executable files unpack itself Windows utilities malicious URLs AntiVM_Disk VM Disk Size Check human activity check Windows ComputerName DNS
1 3 8.8 M

49088 2020-07-09 09:54 http://91.198.220.225/microsof...  

489f36c666847f46e05370a3ec37566f


VirusTotal Malware suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger Creates executable files exploit crash unpack itself Windows utilities malicious URLs AntiVM_Disk VM Disk Size Check human activity check Windows Exploit ComputerName DNS crashed
2 5 10.6 M

49089 2020-07-09 09:48 http://91.198.220.225/microsof...  

489f36c666847f46e05370a3ec37566f


VirusTotal Malware suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger Creates executable files unpack itself Windows utilities AntiVM_Disk VM Disk Size Check Windows ComputerName DNS
1 2 6.4 M

49090 2020-07-09 09:47 http://91.198.220.225/microsof...  

489f36c666847f46e05370a3ec37566f


VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger Creates executable files exploit crash unpack itself Windows utilities malicious URLs AntiVM_Disk VM Disk Size Check human activity check Windows Exploit ComputerName DNS crashed
2 5 10.8 M 24

49091 2020-07-09 08:38 Bill_jule25_proposal2.xls  

fd53d69f88f0b9981cda1c0f1a52b75a


VirusTotal Malware unpack itself malicious URLs
2.2 M 38

49092 2020-07-09 08:37 http://91.198.220.225/microsof...  

489f36c666847f46e05370a3ec37566f


VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger Creates executable files exploit crash unpack itself Windows utilities malicious URLs AntiVM_Disk VM Disk Size Check human activity check Windows Exploit ComputerName DNS crashed
1 4 10.8 M 24

49093 2020-07-09 07:51 http://doorbhai.com/wp-keys.ph...  

7d23bb67055769142aa57e851fe8c83d


VirusTotal Malware Code Injection unpack itself Windows utilities malicious URLs Windows
1 2 3.0 M

49094 2020-07-08 18:19 http://veyron.ir/gregx/frankx....  

87712606fb9aaef0299a5ec915de4544


VirusTotal Malware Code Injection buffers extracted Creates executable files exploit crash unpack itself Windows utilities AppData folder malicious URLs sandbox evasion Windows Exploit crashed
1 2 8.2 M 49

49095 2020-07-08 17:47 https://app.gomtv.com/gom/NEW_...  

cdf0ee07031e51f2fb8648e1abe9f1f4


VirusTotal Malware Code Injection Creates executable files exploit crash unpack itself Windows utilities AppData folder Windows Exploit crashed
1 2 4.0 M 3