Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6403_us | Nov. 5, 2023, 12:29 p.m. | Nov. 5, 2023, 12:43 p.m. |
-
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\j-10.dll,Edge
1820 -
rundll32.exe "C:\Windows\System32\rundll32.exe" C:\Users\test22\AppData\Local\Temp\j-10.dll,
2156
Suricata Alerts
Suricata TLS
No Suricata TLS
suspicious_features | Connection to IP address | suspicious_request | GET http://27.124.46.157:8000/1 |
request | GET http://27.124.46.157:8000/1 |
file | C:\Users\test22\AppData\Roaming\5Q3F4ZYWu4.exe |
file | C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZTY94C7J\1[1] |
file | C:\Users\test22\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VKMIWH9C\1[1] |
host | 27.124.46.157 |