No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2023-12-14 19:32 |
statem_pdf.exe 55461180284dcdf6ad0f3edaf8d68307Client SW User Data Stealer browser info stealer Generic Malware Google Chrome User Data Downloader Malicious Library WinRAR UPX Http API PWS Code injection Create Service Socket DGA ScreenShot Escalate priviledges Steal credential Sniff Audio HTTP DNS Bi Browser Info Stealer VirusTotal Malware PDB Code Injection Checks debugger Creates executable files exploit crash unpack itself Check virtual network interfaces malicious URLs installed browsers check Exploit Browser Remote Code Execution DNS crashed |
1 | 9.6 | M | 38 | ZeroCERT | |||||||||||||||||
|
||||||||||||||||||||||||
2 | 2023-12-14 19:03 |
Syences.exe f0207a4a17b47cba7d87142363b12477Malicious Library .NET framework(MSIL) UPX PE32 PE File .NET EXE OS Processor Check VirusTotal Malware Check memory Checks debugger unpack itself |
2.4 | M | 55 | ZeroCERT | ||||||||||||||||||
|