Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
6676 2021-03-30 14:48 ORDER-656-2561981-4091274.zip  

76cdb2bad9582d23c1f6f4d868218d6c

guest

6677 2021-03-30 15:56 requirement.txt  

61c79da0f94843294be6de0a0f9f8501


Check memory unpack itself
1.0 조광섭

6678 2021-03-30 15:58 requirement.txt  

61c79da0f94843294be6de0a0f9f8501


Check memory unpack itself DNS
1.6 조광섭

6679 2021-03-30 16:00 requirement.txt  

61c79da0f94843294be6de0a0f9f8501


Check memory unpack itself
1.0 조광섭

6680 2021-03-30 16:00 requirement.txt  

61c79da0f94843294be6de0a0f9f8501


Check memory unpack itself
1.0 조광섭

6681 2021-03-30 16:07 iexplore.exe  

c50eeb216ab9f7e9b375270426c4dfd6


Gen PDB Remote Code Execution
0.6 조광섭

6682 2021-03-30 16:08 requirement.txt  

61c79da0f94843294be6de0a0f9f8501

Check memory unpack itself
1.0 조광섭

6683 2021-03-30 16:16 om.exe  

a5cef6534e6f1347419ce386ba477c3e


Azorult .NET framework VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows ComputerName Cryptographic key crashed
8.4 M 12 조광섭

6684 2021-03-30 16:57 winlog.exe  

d178c14362d0e9f7f76cd0dd6c90ef2c


Azorult .NET framework VirusTotal Malware Check memory Checks debugger unpack itself
2.4 M 50 조광섭

6685 2021-03-30 17:13 Practical3.exe  

8819d7f8069d35e71902025d801b44dd


Antivirus VirusTotal Malware PDB suspicious privilege Check memory WMI Windows utilities WriteConsoleW Windows ComputerName
5.0 48 guest

6686 2021-03-30 18:01 musteri.exe  

c64253856d7af67fb3a75fe2cfcffd09

VirusTotal Malware PDB Check memory RWX flags setting unpack itself
2.0 20 조광섭

6687 2021-03-30 18:21 ezmumkw.rar  

72a78f73900f015106d45b1d1d6149fe

Dridex TrickBot VirusTotal Malware PDB MachineGuid Malicious Traffic Checks debugger unpack itself Collect installed applications installed browsers check Kovter Browser ComputerName DNS crashed
1 1 1 1 5.4 M 9 ZeroCERT

6688 2021-03-30 18:22 winlog.exe  

f04d2a73e6cbfa7448cddc8a720e8b7d

FormBook Malware download VirusTotal Malware suspicious privilege Malicious Traffic Check memory Creates executable files ICMP traffic unpack itself AppData folder sandbox evasion DNS
18 23 1 6.2 11 ZeroCERT

6689 2021-03-30 18:23 rh1trnt.rar  

3479d48fef3fa742d91e84705ff4f882

Dridex TrickBot VirusTotal Malware PDB MachineGuid Malicious Traffic Checks debugger unpack itself Collect installed applications installed browsers check Kovter Browser ComputerName DNS crashed
1 1 1 1 5.4 M 8 ZeroCERT

6690 2021-03-30 18:23 vbc.exe  

36f0d9fd3552d8cc6034d3be558568d4

Browser Info Stealer LokiBot Malware download FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware c&c suspicious privilege MachineGuid Malicious Traffic Check memory Creates executable files unpack itself AppData folder AntiVM_Disk sandbox evasion VM Disk Size Check installed browsers check Browser Email ComputerName DNS Software
1 2 7 1 9.4 M 7 ZeroCERT