Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
6946 2021-04-06 16:41 9e227b07643afd3444c4d30f0c47c3...  

9e227b07643afd3444c4d30f0c47c3cf


Antivirus VirusTotal Malware powershell suspicious privilege Malicious Traffic Check memory Checks debugger Creates shortcut Creates executable files unpack itself Detects VirtualBox powershell.exe wrote Check virtual network interfaces suspicious process Windows ComputerName Cryptographic key
4 2 11.0 M 25 ZeroCERT

6947 2021-04-06 16:43 9e227b07643afd3444c4d30f0c47c3...  

9e227b07643afd3444c4d30f0c47c3cf


Antivirus Malware powershell suspicious privilege Malicious Traffic Check memory Checks debugger Creates shortcut Creates executable files unpack itself powershell.exe wrote Check virtual network interfaces suspicious process WriteConsoleW Windows ComputerName DNS Cryptographic key
3 2 9.8 M ZeroCERT

6948 2021-04-06 16:44 A4ge7vE97nKzwZk.exe  

4bf1d28524782e3de6d241c2bb625b5e


Azorult .NET framework Code Injection Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces Windows DNS Cryptographic key
3 1 8.8 M ZeroCERT

6949 2021-04-06 16:45 sogoufgnm.e  

aa2bac3e53d4a670c8728f862f5e2650


Gen2 Gen1 VirusTotal Malware PDB Code Injection Check memory Creates executable files unpack itself AppData folder malicious URLs Remote Code Execution Software
7 10 7.6 M 46 ZeroCERT

6950 2021-04-06 16:46 FreeMaps.5c47f63efa43456bbcbfe...  

5a8f3d6ec2237cfc9512cd2f0077ad70


Gen2 VirusTotal Malware Check memory Creates executable files unpack itself AppData folder sandbox evasion
5 4 4.2 M 33 ZeroCERT

6951 2021-04-06 16:46 china.png  

6be41709f8bfbf06307cc56d04249801


AsyncRAT backdoor VirusTotal Malware AutoRuns PDB MachineGuid Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files ICMP traffic unpack itself Check virtual network interfaces AppData folder Windows DNS
3 10 7.2 M 49 ZeroCERT

6952 2021-04-06 16:46 china.png  

6be41709f8bfbf06307cc56d04249801


AsyncRAT backdoor Malware AutoRuns PDB Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files unpack itself Detects VirtualBox Check virtual network interfaces AppData folder Windows
3 9 5.6 M 조광섭

6953 2021-04-06 16:59 sample.exe  

7f8a15aca0965d3ef7f5e36245ee20fa


Azorult .NET framework AsyncRAT backdoor VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces Windows DNS Cryptographic key
1 4 12.4 M 53 ZeroCERT

6954 2021-04-06 17:05 china.png  

6be41709f8bfbf06307cc56d04249801


AsyncRAT backdoor VirusTotal Malware AutoRuns PDB MachineGuid Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files unpack itself Check virtual network interfaces AppData folder Windows
9 5.8 M 49 조광섭

6955 2021-04-06 17:06 sample.exe  

7f8a15aca0965d3ef7f5e36245ee20fa


Azorult .NET framework AsyncRAT backdoor VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces Windows DNS Cryptographic key
1 4 12.4 M 53 조광섭

6956 2021-04-06 17:08 poploader-2.exe  

ce7d134fdcc4b4f44a279dc959886c9e


Generic Malware VirusTotal Malware PDB
2.2 M 41 r0d

6957 2021-04-06 17:13 sample.exe  

7f8a15aca0965d3ef7f5e36245ee20fa


Azorult .NET framework AsyncRAT backdoor VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces Windows DNS Cryptographic key
1 5 12.4 M 53 조광섭

6958 2021-04-06 17:13 china.png  

6be41709f8bfbf06307cc56d04249801


AsyncRAT backdoor VirusTotal Malware AutoRuns PDB MachineGuid Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files ICMP traffic unpack itself Check virtual network interfaces AppData folder Windows DNS
10 7.2 M 49 조광섭

6959 2021-04-06 18:01 9e227b07643afd3444c4d30f0c47c3...  

9e227b07643afd3444c4d30f0c47c3cf


Antivirus VirusTotal Malware powershell suspicious privilege Malicious Traffic Check memory Checks debugger Creates shortcut Creates executable files unpack itself powershell.exe wrote Check virtual network interfaces suspicious process WriteConsoleW Windows ComputerName Cryptographic key
2 2 10.0 M 25 ZeroCERT

6960 2021-04-07 07:46 6gdwwv.exe  

77be0dd6570301acac3634801676b5d7


Ficker Stealer VirusTotal Malware IP Check
1 4 2.4 M 58 ZeroCERT