No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2021-03-22 09:20 |
wmin.exe 806ba19af21c27492a4e92e38d64c634Azorult .NET framework AsyncRAT backdoor VirusTotal Malware AutoRuns suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities Check virtual network interfaces suspicious process AppData folder malicious URLs WriteConsoleW Tofsee Windows ComputerName DNS Cryptographic key Software crashed |
1
|
3 | 1 | 17.8 | M | 28 | ZeroCERT | |||||||||||||||
|