Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
631 2020-07-09 17:03 http://91.198.220.225/microsof...  

489f36c666847f46e05370a3ec37566f


VirusTotal Malware Code Injection Malicious Traffic Creates executable files unpack itself Windows utilities Windows DNS
1 1 4.6 M

632 2020-07-10 12:19 http://fileexchangeserviceform...  

e1204f68e985164c7c87828095f5bcb6


Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger Creates executable files RWX flags setting exploit crash unpack itself Windows utilities suspicious process AppData folder malicious URLs installed browsers check Windows Exploit Browser Email ComputerName DNS DDNS Software crashed
3 5 14.2 M 21

633 2020-07-10 12:20 http://excelofficeonline.com/P...  

3b5cc52ebfb46933d7665cf6125d9b72


VirusTotal Malware suspicious privilege Code Injection buffers extracted Creates executable files RWX flags setting exploit crash unpack itself Windows utilities sandbox evasion Windows Exploit Browser crashed
2 4 8.8 M

634 2020-07-10 12:23 http://sagc.be/svc.exe  

05e4aeecf11a890bfc365ccce931065b


VirusTotal Malware Code Injection Creates executable files exploit crash unpack itself Windows utilities AppData folder Windows Exploit crashed
1 2 4.0 M 22

635 2020-07-10 12:23 http://75.127.1.203/ubb.exe  

45c06eab307690b796dd9c1a3c7f8eb6


VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files exploit crash unpack itself Windows utilities AppData folder malicious URLs Windows Exploit DNS crashed
2 3 11.8 M 33

636 2020-07-10 12:25 http://abass.ir/bigmanx/dutyx....  

d7aa2e5f3f9246c25844c9e8d6d709f9


VirusTotal Malware Code Injection Creates executable files unpack itself Windows utilities Windows
1 2 3.6 M

637 2020-07-10 12:59 http://abass.ir/bigmanx/dutyx....  

d7aa2e5f3f9246c25844c9e8d6d709f9


VirusTotal Malware
0.6 M

638 2020-07-10 18:30 http://185.172.110.217/robx/re...  


VirusTotal Malware Code Injection unpack itself Windows utilities malicious URLs Windows DNS
1 3 5.2 M

639 2020-07-10 23:16 http://192.3.140.203/OpyRmPCoN...  

04686fa9ba01f92a3da7275b7482ce9c


VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files RWX flags setting exploit crash unpack itself Windows utilities suspicious process AppData folder malicious URLs WriteConsoleW Windows Exploit ComputerName DNS crashed
2 3 15.0 M 14

640 2020-07-11 00:02 cykk.exe  

dcbed5a043d3eca73e3451f66718882f


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself malicious URLs
1 2 8.0 M 22

641 2020-07-11 00:13 http://veyron.ir/aguerox/aguer...  

cd8d396fefb42859406abdbc0462f6b4


VirusTotal Malware suspicious privilege Code Injection Checks debugger buffers extracted Creates executable files exploit crash unpack itself Windows utilities malicious URLs Windows Exploit crashed
2 4 9.6 M

642 2020-07-11 00:29 http://19workfineanotherrainbo...  

9d4c81c16699da96cacc73cabaaf9fb4


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates executable files exploit crash unpack itself Windows utilities suspicious process malicious URLs Windows Exploit DNS DDNS crashed
2 4 10.4 M

643 2020-07-11 00:33 http://dennissmith.ug/ds2.exe  

b11e1b59c55fe58bee59b66a38bc962c


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut Creates executable files exploit crash unpack itself Windows utilities Disables Windows Security suspicious process AppData folder malicious URLs Windows Exploit ComputerName Cryptographic key crashed
2 4 13.4 M 21

644 2020-07-11 00:35 http://smiothmadara.ug/os2.exe  

55a24afe65e5d8459cc31973277d1909


Browser Info Stealer VirusTotal Email Client Info Stealer Malware Cryptocurrency wallets Cryptocurrency suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates executable files ICMP traffic exploit crash unpack itself Windows utilities Collect installed applications suspicious process AppData folder malicious URLs WriteConsoleW anti-virtualization human activity check installed browsers check Windows Exploit Browser Email ComputerName crashed
10 3 18.4 M 16

645 2020-07-11 00:40 http://memishooee.pw/down/id20...  

8490df97262455335c06e8d139449080


Browser Info Stealer VirusTotal Malware Code Injection Malicious Traffic heapspray Creates executable files RWX flags setting exploit crash unpack itself Windows utilities AppData folder malicious URLs suspicious TLD Windows Exploit Browser crashed
3 6 9.2 M 50