Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
52651 2020-07-31 12:39 http://www.nalara1220.o-r.kr  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows DNS
6 2 3.6

52652 2020-07-31 12:34 http://www.nalara1220.o-r.kr  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows DNS
6 2 3.6

52653 2020-07-31 12:33 http://www.nalara1220.o-r.kr  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files unpack itself Windows utilities malicious URLs Windows DNS
6 2 3.6

52654 2020-07-31 11:06 websoc.py  

7f2d755d0296d1941bab36410cda8719


malicious URLs WriteConsoleW
1.0

52655 2020-07-31 11:02 aps.exe  

a69534a2d57ce2b2e0ca6c2e101ada2c


VirusTotal Malware Check memory Checks debugger buffers extracted Creates executable files unpack itself AppData folder malicious URLs crashed
4.0 M 22

52656 2020-07-31 10:59 2xp2t9649.exe  

dedaa6e9be869d05d710493436323d42


VirusTotal Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName DNS Cryptographic key
1 2 7.4 14

52657 2020-07-31 10:58 http://www.nalara1220.o-r.kr  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files unpack itself Windows utilities Windows DNS
6 2 3.2

52658 2020-07-31 10:06 ttUqr9Iap4CV6MQQmW8.exe  

8c8d8b489dd511c7a852c4d7209c49f3


VirusTotal Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName RCE DNS Cryptographic key
1 1 6.2 M 10

52659 2020-07-31 10:00 DGTES300720.msi  

50fb6ffc2ba9a462faf3f8c36d926104


VirusTotal Malware suspicious privilege Check memory Checks debugger unpack itself malicious URLs AntiVM_Disk VM Disk Size Check ComputerName DNS
1 1 4.6 10

52660 2020-07-31 09:55 ttUqr9Iap4CV6MQQmW8.exe  

8c8d8b489dd511c7a852c4d7209c49f3


VirusTotal Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName RCE DNS Cryptographic key
1 1 6.2 M 10

52661 2020-07-31 09:45 ehy80.exe  

b41b34a0d85e35cdade7072d28fd3a32


VirusTotal Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName RCE DNS Cryptographic key
1 1 5.6 10

52662 2020-07-31 09:44 z1u05.exe  

4a724ce7cc9bf967bef712e7d79ed4e1


VirusTotal Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName RCE DNS Cryptographic key
2 2 6.2 10

52663 2020-07-31 09:39 aps.exe  

a69534a2d57ce2b2e0ca6c2e101ada2c


VirusTotal Malware Check memory Checks debugger buffers extracted Creates executable files unpack itself AppData folder malicious URLs crashed
4.0 M 22

52664 2020-07-31 09:21 5vP.exe  

2ec9c6b5d6da8700912901380b5c97ca


VirusTotal Malware unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName RCE DNS Cryptographic key
1 2 6.0 10

52665 2020-07-31 09:15 VwxK1rtlv41AxrJ996.exe  

b42b5de421096cbee61dcdbd9980dc6e


unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName RCE DNS Cryptographic key
1 2 5.4