Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
9691 2024-05-28 09:39 applovin_exo_ic_default_album_...  

8485ca73fee110095b885a6ea7926030


AntiDebug AntiVM MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities Windows Exploit DNS crashed
3.8 guest

9692 2024-05-28 09:39 applovin_exo_ic_chevron_right....  

951d5966a09fd7686a0d7f3eabe66d44


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
2 4.8 guest

9693 2024-05-28 09:39 rtx.exe  

af18d6dfe58e07bb76c7701a2c320ce7


Generic Malware Malicious Library UPX AntiDebug AntiVM PE File PE32 OS Processor Check VirusTotal Malware Buffer PE AutoRuns Code Injection Check memory Checks debugger buffers extracted Creates executable files ICMP traffic unpack itself Check virtual network interfaces sandbox evasion Windows Tor ComputerName RCE DNS
14 8 13.8 M 61 ZeroCERT

9694 2024-05-28 09:38 applovin_exo_ic_chevron_right....  

951d5966a09fd7686a0d7f3eabe66d44


AntiDebug AntiVM MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities Windows Exploit DNS crashed
3.8 guest

9695 2024-05-28 09:38 applovin_exo_ic_chevron_left.x...  

4a64cd89e0cc0d4715746c2f3b2103da


AntiDebug AntiVM MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities Windows Exploit DNS crashed
3.8 guest

9696 2024-05-28 09:38 1.jpg  

d8ca3d5e5f0f8d22cb7230d2bc1d1050


Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware unpack itself RCE
2.4 M 38 ZeroCERT

9697 2024-05-28 09:34 applovin_exo_ic_check.xml  

73928838d0c864ea6c4b14e8b0df2e1c


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
2 4.8 guest

9698 2024-05-28 09:33 applovin_exo_ic_chevron_left.x...  

4a64cd89e0cc0d4715746c2f3b2103da


AntiDebug AntiVM MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities Windows Exploit DNS crashed
3.8 guest

9699 2024-05-28 09:33 win-test.exe  

eb5d27678207ba63921c0b18a655bf3f


Metasploit Generic Malware PE64 PE File VirusTotal Malware DNS crashed
1 3.6 M 66 ZeroCERT

9700 2024-05-28 09:32 applovin_exo_ic_audiotrack.xml  

e1b5ef9041ed0efcfa6414254aade698


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
2 4.8 guest

9701 2024-05-28 09:32 AndroidManifest.xml  

39019dd6cb0ef9e87abeb7791490255d


Downloader Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Hijack Network Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities malicious URLs Tofsee Windows Exploit DNS crashed
2 4.8 guest

9702 2024-05-28 09:32 STHealthClient.exe  

70ab645e72548443cea20ffd8005dc1a


RedLine Infostealer UltraVNC Generic Malware Malicious Library UPX PE File PE32 OS Processor Check VirusTotal Malware PDB suspicious privilege Check memory Checks debugger buffers extracted Creates executable files ICMP traffic unpack itself Check virtual network interfaces AppData folder Windows DNS Cryptographic key crashed
2 1 4 7.6 M 41 ZeroCERT

9703 2024-05-28 09:32 asdf.exe  

851b09408fb8c6d26d4bba579cc8a8ab


AntiDebug AntiVM MSOffice File Code Injection ICMP traffic RWX flags setting exploit crash unpack itself Windows utilities Tofsee Windows Exploit DNS crashed
14 2 6.2 M ZeroCERT

9704 2024-05-28 09:32 applovin_exo_ic_check.xml  

73928838d0c864ea6c4b14e8b0df2e1c


AntiDebug AntiVM MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities Windows Exploit DNS crashed
3.8 guest

9705 2024-05-28 09:32 applovin_exo_ic_audiotrack.xml  

e1b5ef9041ed0efcfa6414254aade698


AntiDebug AntiVM MSOffice File Code Injection RWX flags setting exploit crash unpack itself Windows utilities Windows Exploit DNS crashed
3.8 guest