Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1201 2020-07-30 15:35 2xp2t9649.exe  

dedaa6e9be869d05d710493436323d42


VirusTotal Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName DNS Cryptographic key
1 1 5.8 14

1202 2020-07-30 15:40 http://factorialk.pp.ua/wp-adm...  


Code Injection unpack itself Windows utilities Windows DNS
1 1 2.8

1203 2020-07-30 15:44 2xp2t9649.exe  

dedaa6e9be869d05d710493436323d42


VirusTotal Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName DNS Cryptographic key
1 1 6.4 14

1204 2020-07-30 15:51 2xp2t9649.exe  

dedaa6e9be869d05d710493436323d42


VirusTotal Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName DNS Cryptographic key
1 1 5.8 14

1205 2020-07-30 16:16 http://www.nalara1220.o-r.kr  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files unpack itself Windows utilities Windows DNS
6 2 3.2

1206 2020-07-30 16:22 2xp2t9649.exe  

dedaa6e9be869d05d710493436323d42


VirusTotal Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName DNS Cryptographic key
1 1 5.8 14

1207 2020-07-30 16:33 2xp2t9649.exe  

dedaa6e9be869d05d710493436323d42


VirusTotal Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName DNS Cryptographic key
1 1 6.4 14

1208 2020-07-30 16:39 2xp2t9649.exe  

dedaa6e9be869d05d710493436323d42


VirusTotal Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName DNS Cryptographic key
1 1 6.4 14

1209 2020-07-30 16:45 2xp2t9649.exe  

dedaa6e9be869d05d710493436323d42


VirusTotal Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName DNS Cryptographic key
1 1 6.4 14

1210 2020-07-30 16:50 http://www.nalara1220.o-r.kr  

c032bb944d6fba21799bd5a4df5b6122


Code Injection Creates executable files unpack itself Windows utilities Windows DNS
6 2 3.2

1211 2020-07-30 17:03 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


Malware AutoRuns suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files ICMP traffic unpack itself Windows utilities AppData folder malicious URLs AntiVM_Disk sandbox evasion Firewall state off VM Disk Size Check human activity check installed browsers check Ransomware Interception Windows Browser ComputerName
7 6 12.8

1212 2020-07-30 17:11 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


Code Injection Creates executable files exploit crash unpack itself Windows utilities AppData folder Windows Exploit DNS crashed
2 1 4.2

1213 2020-07-30 17:12 2xp2t9649.exe  

dedaa6e9be869d05d710493436323d42


VirusTotal Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName DNS Cryptographic key
2 2 6.4 14

1214 2020-07-30 19:02 BAL_SL7895839983PH.doc  

d485d3df948c1ca2ac7ae5e9916cd704


Vulnerability VirusTotal Malware unpack itself
2.8 30

1215 2020-07-30 19:02 INVOICE 2716-300397.doc  

bcc2fc9203b0b000565ce197db22a503


Vulnerability VirusTotal Malware unpack itself
2.6 28