No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2021-08-29 12:42 |
ebmm.exe 6afae368ca54cb50b11747ce01850e35PWS Loki[b] Loki.m RAT .NET framework Generic Malware DNS Socket KeyLogger AntiDebug AntiVM PE File .NET EXE PE32 Browser Info Stealer LokiBot Malware download FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware c&c PDB suspicious privilege MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself malicious URLs installed browsers check Windows Browser Email ComputerName DNS Cryptographic key Software |
1
|
1 | 6 | 1 | 13.4 | M | 37 | ZeroCERT | ||||||||||||||
|
||||||||||||||||||||||||
2 | 2021-08-28 18:01 |
exb.exe bc48edd1be13cb850ba3c0bba7d74ea0RAT PWS .NET framework Generic Malware SMTP KeyLogger AntiDebug AntiVM PE File .NET EXE PE32 VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows ComputerName Cryptographic key crashed |
9.2 | M | 37 | ZeroCERT | ||||||||||||||||||
|