Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1291 2020-08-01 08:53 a77IOgQPqa.exe  

68f5c88b79ffcf7baa3d78274d0d49df


unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName Remote Code Execution DNS Cryptographic key
1 1 3.6

1292 2020-08-01 09:21 dZ.exe  

79bb776ffd56712e981eeaa0224ac0f6


unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName Remote Code Execution DNS Cryptographic key
1 1 4.2 M

1293 2020-08-01 09:26 asdf.EXE  

6ebc441b966301fb0df9e020409349b4


Browser Info Stealer Emotet FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware Cryptocurrency wallets Cryptocurrency Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates shortcut Creates executable files RWX flags setting unpack itself Windows utilities Disables Windows Security Collect installed applications Check virtual network interfaces suspicious process AppData folder malicious URLs AntiVM_Disk sandbox evasion WriteConsoleW anti-virtualization VM Disk Size Check human activity check installed browsers check Ransomware Interception Windows Browser Tor Email ComputerName DNS Cryptographic key Software crashed keylogger
25 7 32.4 M 44

1294 2020-08-01 09:27 hoga.exe  

cdf6c228fdadc71c3d1765cb110eca43


VirusTotal Malware Check memory Checks debugger unpack itself malicious URLs crashed
3.6 M 20

1295 2020-08-01 14:38 rc.exe  

24c2540e588585a4daf8b3fe1112a78d


Emotet VirusTotal Malware Buffer PE AutoRuns Code Injection buffers extracted Creates executable files RWX flags setting unpack itself AppData folder malicious URLs Interception Windows DNS
2 4 12.8 M 10

1296 2020-08-01 14:38 w389sj9hy67262919.exe  

8058468a4a0feb416e752d519c4155b5


Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName Remote Code Execution DNS Cryptographic key
1 2 6.4 M

1297 2020-08-01 14:47 FriKanya.exe  

9b65bdf577ccfeacc1abb78248f96fc4


Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware AutoRuns suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself malicious URLs Windows Browser Email ComputerName Cryptographic key Software crashed keylogger
12.4 M 28

1298 2020-08-01 14:51 asdfg.exe  

2983b011d132fe58ae6f372c735c1287


Emotet VirusTotal Email Client Info Stealer Malware Cryptocurrency wallets Cryptocurrency Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates shortcut Creates executable files RWX flags setting unpack itself Windows utilities Disables Windows Security Collect installed applications Check virtual network interfaces suspicious process AppData folder malicious URLs AntiVM_Disk WriteConsoleW VM Disk Size Check human activity check installed browsers check Ransomware Interception Windows Browser Tor Email ComputerName DNS Cryptographic key crashed
14 7 28.0 M 47

1299 2020-08-01 14:51 R6F2tWxe8pgjkj9eel.exe  

75152fd71345281cfabfe764447eb373


unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName Remote Code Execution DNS Cryptographic key
1 2 5.2

1300 2020-08-01 14:52 imgpaper.png.exe  

245d06009f069d06cff6f73d4d629b9a


Malware suspicious privilege Malicious Traffic buffers extracted unpack itself malicious URLs ComputerName DNS
2 7 6.2

1301 2020-08-02 09:27 invoice_114122100.doc  

2e26cdb457a9a300f09115c349043d81


VirusTotal Malware exploit crash unpack itself Exploit DNS crashed
1 1 4.0 28

1302 2020-08-02 09:28 jKVanZ57DCE2.exe  

605e9924577d249ba6ad9deba82ae510


VirusTotal Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Browser Advertising ComputerName Remote Code Execution DNS Cryptographic key
1 8 8.6 M 42

1303 2020-08-02 09:44 tt9y69.exe  

024b18c095db760ba3ec51b916fd0dee


Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName Remote Code Execution DNS Cryptographic key
1 2 6.6

1304 2020-08-02 09:52 QVlCRxo8a95Iso8A.exe  

bf6658495ca7778bb10a7faaabf8fdf1


VirusTotal Malware Malicious Traffic unpack itself malicious URLs sandbox evasion Windows Advertising ComputerName Remote Code Execution DNS Cryptographic key
1 6 8.0 M 23

1305 2020-08-02 11:48 http://admaris.ir/izux/izux.ex...  


VirusTotal Malware Code Injection unpack itself Windows utilities malicious URLs Windows
2.8