Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
961 2020-07-27 13:56 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows
6 4 3.0

962 2020-07-27 14:00 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows
6 4 3.0

963 2020-07-27 14:01 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows
6 4 3.0

964 2020-07-27 14:10 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows
6 4 3.0

965 2020-07-27 14:13 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows
6 4 3.0

966 2020-07-27 14:14 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows
6 4 3.0

967 2020-07-27 14:17 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows
6 4 3.0

968 2020-07-27 14:18 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows
6 4 3.0

969 2020-07-27 14:19 Update.exe  

bbd904ed987663236c996b9550903d04


Check memory Checks debugger unpack itself malicious URLs WriteConsoleW Windows Cryptographic key
2.0

970 2020-07-27 14:20 GitHubDesktop.exe  

a4c31cb51f5dee95156e1925d87fb4ec


PDB crashed
0.8

971 2020-07-27 14:23 node-v12.18.0-x64.msi  

e3f6617be3157b28ffee007e5d2790d2


Buffer PE suspicious privilege Check memory Checks debugger buffers extracted Creates shortcut unpack itself malicious URLs AntiVM_Disk VM Disk Size Check human activity check installed browsers check Ransomware Browser ComputerName crashed
6.6

972 2020-07-27 14:27 ransom.js  

6d6a0d13f1f121e62535b378f3f17a0f


Dridex Malware wscript.exe payload download malicious URLs Tofsee DNS
2 1 3 2.6

973 2020-07-27 14:44 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows
6 4 3.0

974 2020-07-27 14:48 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows
6 4 3.0

975 2020-07-27 14:50 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows
6 4 3.0