Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
826 2020-07-21 11:31 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Dridex Malware Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
7 8 3 4.6

827 2020-07-21 11:35 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Dridex Malware Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
7 8 3 4.6

828 2020-07-21 11:39 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Dridex Malware Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
7 3 3 4.6

829 2020-07-21 12:53 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Dridex Malware Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
7 3 3 4.6

830 2020-07-21 13:09 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Dridex Malware Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
7 3 3 4.6

831 2020-07-21 13:38 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Dridex Malware Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
7 3 3 4.6

832 2020-07-21 14:01 mikex.exe  

88df89231db91e888c971e8f9d9dd4e5


VirusTotal Malware Code Injection buffers extracted unpack itself sandbox evasion crashed
5.8 32

833 2020-07-21 14:19 qes48.exe  

9c6cfc58709751f6e90b4c9be2d7aef2


Emotet Malware download VirusTotal Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Tofsee Windows Advertising ComputerName DNS Cryptographic key
3 4 2 8.0 M 26

834 2020-07-21 14:23 doc-5382.docm  

ae18ed686e82ba41cebc162245c7fc42


VirusTotal Malware Malicious Traffic unpack itself Tofsee DNS
2 2 1 3.0 20

835 2020-07-21 14:28 doc-5382.docm  

ae18ed686e82ba41cebc162245c7fc42


VirusTotal Malware Malicious Traffic unpack itself Tofsee DNS
2 2 1 3.0 20

836 2020-07-21 14:29 doc-5382.docm  

ae18ed686e82ba41cebc162245c7fc42


VirusTotal Malware unpack itself
1.2 M 20

837 2020-07-21 18:17 FILE-2020_07_21-195317.doc  

589ee490769a1737f7365d7c5655008e


Vulnerability Malware Malicious Traffic unpack itself Tofsee Windows DNS
4 4 3 3.6

838 2020-07-21 18:18 https://bloomcareltd.co.uk/wp-...  

85321df51c43c38d4bc6927ee7cea7a9


Dridex VirusTotal Malware Code Injection unpack itself Windows utilities malicious URLs Tofsee Windows DNS
1 3 3.2

839 2020-07-21 18:18 F_UUW_070120_VNF_072120.doc  

0cd06145a71c3f2bab7722fd5788579d


Emotet Malware download Vulnerability VirusTotal Malware Malicious Traffic unpack itself Tofsee Windows DNS
4 5 6 5.4 20

840 2020-07-21 18:27 https://class.britishonline.co...  

02032a73a8b1788cdcc567b749812444


Dridex VirusTotal Malware Code Injection Malicious Traffic unpack itself Windows utilities malicious URLs Tofsee Windows DNS
2 3 3 4.4