No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2021-07-07 10:59 |
mazx.exe 59420de7ed3a5745c831732deb9252b9PWS .NET framework NetWire RAT Generic Malware Admin Tool (Sysinternals etc ...) PE File .NET EXE PE32 VirusTotal Malware Check memory Checks debugger unpack itself crashed |
2.2 | M | 23 | ZeroCERT | ||||||||||||||||||
|
||||||||||||||||||||||||
2 | 2021-07-07 09:36 |
vbc.exe c32025bcdb5f395414464705c115577dPWS .NET framework NetWire RAT Generic Malware Admin Tool (Sysinternals etc ...) AntiDebug AntiVM PE File .NET EXE PE32 FormBook Malware download VirusTotal Malware suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself malicious URLs Windows DNS Cryptographic key |
8
|
11 | 1 | 9.6 | 22 | ZeroCERT | ||||||||||||||||
|
||||||||||||||||||||||||
3 | 2021-07-07 09:28 |
bigheadx.exe 730c3e11f32160328a8ec15631e91b52PWS .NET framework NetWire RAT Generic Malware Admin Tool (Sysinternals etc ...) PE File .NET EXE PE32 VirusTotal Malware Check memory Checks debugger unpack itself |
2.0 | M | 23 | ZeroCERT | ||||||||||||||||||
|