Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6401 | April 21, 2021, 3:59 p.m. | April 21, 2021, 4 p.m. |
-
AeroAdmin.exe "C:\Users\test22\AppData\Local\Temp\AeroAdmin.exe"
2444
Name | Response | Post-Analysis Lookup |
---|---|---|
auth11.aeroadmin.com | 37.48.87.53 |
Suricata Alerts
Flow | SID | Signature | Category |
---|---|---|---|
TCP 192.168.56.101:49200 -> 37.48.87.53:5665 | 2260001 | SURICATA Applayer Wrong direction first Data | Generic Protocol Command Decode |
Suricata TLS
No Suricata TLS
pdb_path | aeroadmin.pdb |
service_name | AeroadminService | service_path | C:\Users\test22\AppData\Local\Temp\"C:\Users\test22\AppData\Local\Temp\AeroAdmin.exe" s -sid 1 |