Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1036 2020-07-28 12:35 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files unpack itself Windows utilities Windows DNS
6 2 3.2

1037 2020-07-28 12:37 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files unpack itself Windows utilities Windows DNS
6 2 3.2

1038 2020-07-28 12:37 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows DNS
6 2 3.6

1039 2020-07-28 12:42 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files unpack itself Windows utilities Windows DNS
6 2 3.2

1040 2020-07-28 12:45 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files unpack itself Windows utilities Windows DNS
6 2 3.2

1041 2020-07-28 12:45 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files unpack itself Windows utilities Windows DNS
6 2 3.2

1042 2020-07-28 12:54 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files unpack itself Windows utilities Windows DNS
6 2 3.2

1043 2020-07-28 12:54 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files unpack itself Windows utilities Windows DNS
6 2 3.2

1044 2020-07-28 12:56 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files unpack itself Windows utilities Windows DNS
6 2 3.2

1045 2020-07-28 12:58 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files unpack itself Windows utilities malicious URLs Windows DNS
6 2 3.6

1046 2020-07-28 13:09 UniSignCRSV3Setup.exe  

3bc8fa98ea99c1d05756ab42799a8ba0


VirusTotal Malware AutoRuns Check memory Checks debugger Creates executable files unpack itself Checks Bios Detects VirtualBox Detects VMWare AppData folder malicious URLs AntiVM_Disk sandbox evasion VMware anti-virtualization VM Disk Size Check Windows ComputerName crashed
10.4 5

1047 2020-07-28 13:22 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows DNS
6 2 3.6

1048 2020-07-28 13:22 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows DNS
6 2 3.6

1049 2020-07-28 13:25 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows DNS
6 2 3.6

1050 2020-07-28 13:26 http://www.nalara1220.o-r.kr/  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files unpack itself Windows utilities Windows DNS
6 2 3.2