No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2021-05-20 09:54 |
hKB8FTiKlaekk3m.exe fa4d3d925791d3b46ac7bb09b643a256AgentTesla AsyncRAT backdoor PWS .NET framework browser info stealer Malicious Library Google Chrome User Data DGA DNS Socket Create Service Sniff Audio HTTP Escalate priviledges KeyLogger FTP Code injection Http API Internet API Steal credential ScreenSh VirusTotal Malware Buffer PE AutoRuns suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities WriteConsoleW Windows DNS Cryptographic key |
12.0 | M | 21 | ZeroCERT | ||||||||||||||||||
|