No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2023-07-12 17:39 |
firmresource.exe ae830ab4838b8fb88af7a8fcf0071d1bGen1 Emotet Malicious Library .NET framework(MSIL) Malicious Packer CAB PE64 PE File .NET EXE PE32 VirusTotal Malware AutoRuns PDB Check memory Checks debugger Creates executable files unpack itself Check virtual network interfaces AppData folder Tofsee Windows Remote Code Execution Cryptographic key |
2 | 2 | 5.6 | M | 27 | ZeroCERT | ||||||||||||||||
|
||||||||||||||||||||||||
2 | 2023-07-11 18:51 |
worldperform.exe 5b5fd4b5ce374372b49e7cc0da6f0e4cGen1 Emotet Malicious Library UPX Malicious Packer .NET framework(MSIL) CAB PE64 PE File OS Processor Check .NET EXE PE32 VirusTotal Malware AutoRuns PDB Check memory Checks debugger Creates executable files unpack itself Check virtual network interfaces AppData folder Tofsee Windows Remote Code Execution Cryptographic key |
2 | 2 | 5.6 | M | 21 | ZeroCERT | ||||||||||||||||
|