Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
6631 2021-03-30 09:24 n7duez.zip  

44dcdfd1873198f50c5dd4dbb1fe8f44


Dridex TrickBot VirusTotal Malware PDB MachineGuid Malicious Traffic Checks debugger unpack itself Collect installed applications installed browsers check Tofsee Kovter Windows Browser ComputerName DNS crashed
4 3 5 1 5.6 M 11 ZeroCERT

6632 2021-03-30 10:15 requirement.txt  

61c79da0f94843294be6de0a0f9f8501


Check memory unpack itself
1.0 조광섭

6633 2021-03-30 10:19 requirement.txt  

61c79da0f94843294be6de0a0f9f8501


Check memory unpack itself
1.0 조광섭

6634 2021-03-30 10:34 requirement.txt  

61c79da0f94843294be6de0a0f9f8501


Check memory unpack itself
1.0 조광섭

6635 2021-03-30 10:37 requirement.txt  

61c79da0f94843294be6de0a0f9f8501


Check memory unpack itself
1.0 조광섭

6636 2021-03-30 10:40 requirement.txt  

61c79da0f94843294be6de0a0f9f8501


Check memory unpack itself
1.0 조광섭

6637 2021-03-30 10:48 om.dot  

2cc05a1c5eddac8787d2aba98ba1fdc6


Malware download VirusTotal Malware Malicious Traffic exploit crash unpack itself Windows Exploit DNS crashed Downloader
1 1 6 4.0 M 28 ZeroCERT

6638 2021-03-30 10:48 om.exe  

a5cef6534e6f1347419ce386ba477c3e


Azorult .NET framework VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows ComputerName DNS Cryptographic key crashed
9.0 12 ZeroCERT

6639 2021-03-30 10:50 qtjlj8.tar  

538ec258e88dd53cb7f1e97936f4c9b9

Dridex TrickBot VirusTotal Malware PDB MachineGuid Malicious Traffic Checks debugger unpack itself Collect installed applications installed browsers check Kovter Browser ComputerName DNS crashed
1 1 1 1 5.4 M 7 ZeroCERT

6640 2021-03-30 10:51 requirement.txt  

61c79da0f94843294be6de0a0f9f8501

Check memory unpack itself
3 1.0 조광섭

6641 2021-03-30 10:53 count.php  

35994b0f330dac6e145ebed16e77ddec

Dridex TrickBot VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Checks debugger buffers extracted RWX flags setting unpack itself Check virtual network interfaces suspicious process IP Check Kovter ComputerName DNS crashed
20 15 4 6 12.0 M 11 ZeroCERT

6642 2021-03-30 10:53 pp83bzm9.zip  

609c12160bee83a946014ce663f7bd1e

Dridex TrickBot VirusTotal Malware PDB MachineGuid Malicious Traffic Checks debugger unpack itself Collect installed applications installed browsers check Kovter Browser ComputerName DNS crashed
3 1 1 1 5.6 M 12 ZeroCERT

6643 2021-03-30 10:53 rlpsrwkf.rar  

e304592773f40ae15360ee26f7e771f3

Dridex TrickBot VirusTotal Malware PDB MachineGuid Malicious Traffic Checks debugger unpack itself Collect installed applications installed browsers check Kovter Browser ComputerName DNS crashed
1 5 1 1 5.4 M 8 ZeroCERT

6644 2021-03-30 10:55 ret5er1.exe  

741151649d1b412fc1bfd480d18f4e84

VirusTotal Malware unpack itself crashed
1.0 9 ZeroCERT

6645 2021-03-30 10:57 .................................  

c774c3df375b0d8ad7cb452595ce6df6

FormBook Malware download VirusTotal Malware Malicious Traffic ICMP traffic exploit crash unpack itself Windows Exploit DNS crashed Downloader
16 21 8 5.2 M 23 ZeroCERT