Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
6481 2021-03-24 16:33 lv.exe  

7fb4bc02c317b69c178833f4af693b75


Malicious Library VirusTotal Malware Code Injection Check memory Checks debugger Creates executable files unpack itself Windows utilities suspicious process AppData folder malicious URLs AntiVM_Disk WriteConsoleW IP Check VM Disk Size Check Windows ComputerName Firmware crashed
1 4 1 9.0 M 55 조광섭

6482 2021-03-24 17:14 lv.exe  

7fb4bc02c317b69c178833f4af693b75


Malicious Library VirusTotal Malware Code Injection Check memory Checks debugger Creates executable files unpack itself Windows utilities suspicious process AppData folder malicious URLs AntiVM_Disk WriteConsoleW IP Check VM Disk Size Check Windows ComputerName Firmware crashed
1 4 1 9.0 M 55 조광섭

6483 2021-03-24 17:36 lv.exe  

7fb4bc02c317b69c178833f4af693b75


Malicious Library VirusTotal Malware Code Injection Check memory Checks debugger Creates executable files unpack itself Windows utilities suspicious process AppData folder malicious URLs AntiVM_Disk WriteConsoleW IP Check VM Disk Size Check Windows ComputerName Firmware crashed
1 4 1 9.0 M 55 조광섭

6484 2021-03-24 18:01 lv.exe  

7fb4bc02c317b69c178833f4af693b75


Malicious Library VirusTotal Malware Code Injection Check memory Checks debugger Creates executable files unpack itself Windows utilities suspicious process AppData folder malicious URLs AntiVM_Disk WriteConsoleW IP Check VM Disk Size Check Windows ComputerName Firmware crashed
1 4 1 9.0 M 55 조광섭

6485 2021-03-24 18:26 local.exe  

a47ec9f34b89e5cd0431b32a299579f9

VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows Cryptographic key
8.6 M 36 ZeroCERT

6486 2021-03-24 18:26 redbutton.png  

021b3c4f43ecf8719fcca871a483767b


Gen Dridex TrickBot Malware suspicious privilege Malicious Traffic buffers extracted RWX flags setting unpack itself Check virtual network interfaces suspicious process Kovter ComputerName Remote Code Execution DNS crashed
1 4 2 5.2 ZeroCERT

6487 2021-03-24 18:28 edgjpx01.zip  

32223f9414898d30c0e67ddb00495cb7

VirusTotal Malware
0.8 M 23 ZeroCERT

6488 2021-03-24 18:31 konko.exe  

414336afee7e93cb70df4b5f250a01c4

VirusTotal Malware DNS
2.2 M 25 ZeroCERT

6489 2021-03-24 18:32 winlog.exe  

d9902307e68c63e1599c4ab0cde18395

FormBook Malware download VirusTotal Malware suspicious privilege Malicious Traffic Check memory Creates executable files ICMP traffic unpack itself AppData folder sandbox evasion
22 23 2 5.8 M 25 ZeroCERT

6490 2021-03-24 18:33 1090804085.exe  

4920169cae3b94797609bcf4d6bc5df4


AsyncRAT backdoor VirusTotal Malware Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces suspicious TLD Tofsee Windows DNS Cryptographic key crashed
1 3 1 11.4 M 19 ZeroCERT

6491 2021-03-24 18:35 ephost.exe  

37b8f7b7e87d094474f76d5b8ca10d11

VirusTotal Malware unpack itself
2.0 18 ZeroCERT

6492 2021-03-25 07:07 https://docs.google.com/uc?id=...  

108ecf579a7c6f931d9d759ff63ca8ab

Code Injection exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit Advertising Google DNS crashed
2 4 2 4.6 2 guest

6493 2021-03-25 07:52 merit.php  

2ae20b49ac0c8f59eaca5e08a319892c

Dridex TrickBot VirusTotal Malware suspicious privilege Malicious Traffic Checks debugger buffers extracted ICMP traffic unpack itself Check virtual network interfaces Kovter ComputerName DNS crashed
1 7 2 6.4 13 ZeroCERT

6494 2021-03-25 08:13 cmd.exe  

dfd05213e529c75e78fc9ccb31acaf4c


Glupteba VirusTotal Malware PDB unpack itself Windows Remote Code Execution crashed
3.0 M 32 ZeroCERT

6495 2021-03-25 09:14 retrsd25.exe  

78388676e1ebde4576357c3727a51787

VirusTotal Malware unpack itself crashed
1.6 27 ZeroCERT