No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2023-06-04 17:40 |
a2592d.exe 3be6be65f8685715130d5be7ba9d2f50UPX Malicious Library AntiDebug AntiVM OS Processor Check PE File PE32 VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted unpack itself Windows Remote Code Execution Cryptographic key |
7.2 | M | 38 | ZeroCERT | ||||||||||||||||||
|
||||||||||||||||||||||||
2 | 2023-06-03 17:27 |
setup.exe 8072726bf6f29230d619ec971b3d2a29UPX Malicious Library AntiDebug AntiVM OS Processor Check PE File PE32 Browser Info Stealer RedLine Malware download FTP Client Info Stealer VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger buffers extracted WMI unpack itself Collect installed applications installed browsers check Stealer Windows Browser ComputerName Remote Code Execution DNS Cryptographic key Software crashed |
1 | 3 | 12.2 | M | 42 | ZeroCERT | ||||||||||||||||
|