Submissions

No Date Request Urls Hosts IDS Rule Score Zero VT Player Etc
1366 2020-08-04 13:14 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


Code Injection Creates executable files exploit crash unpack itself Windows utilities AppData folder Windows Exploit DNS crashed
2 1 4.2 admin

1367 2020-08-04 13:19 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


Code Injection Creates executable files exploit crash unpack itself Windows utilities AppData folder Windows Exploit DNS crashed
2 1 4.2

1368 2020-08-04 13:44 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


Code Injection Creates executable files exploit crash unpack itself Windows utilities AppData folder Windows Exploit DNS crashed
2 1 4.2

1369 2020-08-04 13:56 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


Code Injection Creates executable files exploit crash unpack itself Windows utilities AppData folder Windows Exploit DNS crashed
2 1 4.2 김철수

1370 2020-08-04 14:01 http://mp3-tools.com/downloads...  


VirusTotal Malware Code Injection unpack itself Windows utilities Windows DNS
1 1 3.2 admin

1371 2020-08-04 14:25 http://download.betanews.com/d...  

02a03bda6410df829ed58c0ade7454b5


Code Injection Creates executable files exploit crash unpack itself Windows utilities AppData folder Windows Exploit DNS crashed
1 1 4.2 admin

1372 2020-08-04 14:29 http://www.nalara12200.o-r.kr  


Code Injection RWX flags setting unpack itself Windows utilities Windows
2.2

1373 2020-08-04 14:31 http://www.nalara12200.o-r.kr  


Code Injection RWX flags setting unpack itself Windows utilities Windows
2.2 guest

1374 2020-08-04 14:34 https://download.nullsoft.com/...  

3017f921a6c42a267842cc8bae9384c1


Code Injection Creates executable files exploit crash unpack itself Windows utilities AppData folder Windows Exploit DNS crashed
1 1 4.2 김철수

1375 2020-08-04 16:01 8888888.png.exe  

e263807c6581fe27f0ceb6ad871877f3


Malware AutoRuns Code Injection Malicious Traffic Check memory buffers extracted Creates shortcut Creates executable files unpack itself Windows utilities Detects VMWare suspicious process malicious URLs sandbox evasion WriteConsoleW VMware human activity check Windows Browser ComputerName DNS crashed
1 1 12.0 admin

1376 2020-08-04 16:19 obi.exe  

30693785c05f4ff68867f0a8432e4cdc


Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware suspicious privilege Checks debugger unpack itself malicious URLs Windows Browser Email ComputerName Software crashed
6.2 M 49 admin

1377 2020-08-04 16:23 pwininilogs.txt.exe  

66fc2899f92ca095d9c27c62eea6cd12


Browser Info Stealer VirusTotal Email Client Info Stealer Malware AutoRuns suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself malicious URLs Windows Browser Email ComputerName Cryptographic key crashed keylogger
12.8 M 31 admin

1378 2020-08-04 18:22 vbc.exe  

142fda88fbe1d33916984ea79dbdfbb7


VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself malicious URLs
7.8 M 32 admin

1379 2020-08-05 09:51 PH7664034.vbs  

11f2464133f1b112799f4ecea59e62df


buffers extracted wscript.exe payload download malicious URLs
1 9 2.8 admin

1380 2020-08-05 09:57 PH7664034.vbs  

11f2464133f1b112799f4ecea59e62df


buffers extracted wscript.exe payload download Creates executable files unpack itself AppData folder malicious URLs DNS
1 3 5.8 admin