Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1111 2020-07-29 11:22 excel.xlsx  

d95ae922fa3e71e6b5a37d418643f791


unpack itself
1.2

1112 2020-07-29 11:28 excel.xlsx  

d95ae922fa3e71e6b5a37d418643f791


unpack itself
1.2

1113 2020-07-29 11:30 https://dojang.io/mod/page/vie...  

d8162dfdbfb93c8b45fce43076538445


Code Injection unpack itself Windows utilities Windows DNS
1 2.4

1114 2020-07-29 11:48 excel.xlsx  

d95ae922fa3e71e6b5a37d418643f791


unpack itself
1.2

1115 2020-07-29 11:50 excel.xlsx  

d95ae922fa3e71e6b5a37d418643f791


unpack itself
1.2

1116 2020-07-29 11:52 excel.xlsx  

d95ae922fa3e71e6b5a37d418643f791


unpack itself
1.2

1117 2020-07-29 13:01 excel.xlsx  

d95ae922fa3e71e6b5a37d418643f791


unpack itself
1.2

1118 2020-07-29 13:02 KISA자료1.xlsx  

d95ae922fa3e71e6b5a37d418643f791


unpack itself
1.2

1119 2020-07-29 13:04 http://www.nalara1220.o-r.kr/m...  

543d9bb195c2df50e3dc076b6fdf95ef


Code Injection Creates executable files RWX flags setting unpack itself Windows utilities Windows
5 4 3.0

1120 2020-07-29 13:09 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


Code Injection Creates executable files RWX flags setting exploit crash unpack itself Windows utilities AppData folder malicious URLs Windows Exploit crashed
3 5 4.4

1121 2020-07-29 13:14 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


Code Injection Creates executable files exploit crash unpack itself Windows utilities AppData folder malicious URLs Windows Exploit crashed
3 5 4.0

1122 2020-07-29 13:20 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


Code Injection Creates executable files exploit crash unpack itself Windows utilities AppData folder malicious URLs Windows Exploit crashed
3 5 4.0

1123 2020-07-29 13:28 jiz.exe  

7eb55ba7c9b9c5529b81aa64d315cd64


Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Check memory Checks debugger unpack itself malicious URLs Windows Browser Email ComputerName Cryptographic key Software crashed
6.6 M 45

1124 2020-07-29 13:47 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


Code Injection Creates executable files exploit crash unpack itself Windows utilities AppData folder Windows Exploit DNS crashed
1 1 4.2

1125 2020-07-29 14:04 winruntime.exe  

532524e6b61b197d92f3bd4ed3331d3d


VirusTotal Malware AutoRuns suspicious privilege Malicious Traffic Check memory Checks debugger WMI unpack itself Windows utilities Check virtual network interfaces suspicious process malicious URLs WriteConsoleW Windows ComputerName DNS crashed
6 2 10.6 M 43