Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
5776 2024-02-09 04:13 content.php  

ca5f9fe0e6f9c679c08312001a149acb


AntiDebug AntiVM MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities Tofsee Windows Exploit DNS crashed
2 3.8 guest

5777 2024-02-09 04:13 PHPConsoleHandler.php  

31553b7fa8087df65179bdc673d678ae


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs crashed
1.0 guest

5778 2024-02-09 04:12 single-kitchor_virtual_tour.ph...  

a6d0a882ce471acee1c47d999d697b8c


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
2 3.8 guest

5779 2024-02-09 04:12 merlin.min.js  

2941b51484f9f83a0e3dfe592fd16957


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs crashed
1.0 guest

5780 2024-02-09 04:12 content-none.php  

5793bacc535e17cc89fe761f16cc30da


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
2 4.8 guest

5781 2024-02-09 04:11 kitchor.pot  

07f9edfdecec6797d96357bdb7ecc131

RWX flags setting unpack itself
0.8 guest

5782 2024-02-09 04:11 merlin.js  

36f47633918675a107df6c1d1b0cc672


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs crashed
1.0 guest

5783 2024-02-09 04:10 merlin-wp.pot  

48f040b7a4c3f12b4c72028d47c7281f

RWX flags setting unpack itself
0.8 guest

5784 2024-02-09 04:10 merlin-wp.pot  

48f040b7a4c3f12b4c72028d47c7281f


Downloader task schedule Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM JPEG Format Vulnerability MachineGuid Check memory Creates executable files RWX flags setting unpack itself malicious URLs AntiVM_Disk VM Disk Size Check installed browsers check Browser ComputerName
4.8 guest

5785 2024-02-09 04:10 editor.js  

5648554a63ff8f70be64f580876b7640


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs crashed
1.0 guest

5786 2024-02-09 04:09 admin.js  

6791298d910033f5646edff44995f419


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs crashed
1.0 guest

5787 2024-02-09 04:09 frontend.js  

d76a09d1f1980471ed8649ec31f7b522


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM unpack itself malicious URLs crashed
1.4 guest

5788 2024-02-09 04:09 select2.js  

5f3a665acb62e337daf350ed608c2bec


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs crashed
1.0 guest

5789 2024-02-09 04:08 Logger.php  

b7cc0e815fa832fec05cc6a882a6b5ca


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM unpack itself malicious URLs crashed
1.4 guest

5790 2024-02-09 04:08 PHPConsoleHandler.php  

31553b7fa8087df65179bdc673d678ae


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM malicious URLs crashed
1.0 guest