No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2021-09-04 14:09 |
PBrowFile17.exe 8e2c6bd0f789c514be09799fa453f9bbGeneric Malware PE File .NET EXE PE32 VirusTotal Malware MachineGuid Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces Tofsee |
2
|
5 | 1 | 2 | 4.4 | M | 47 | ZeroCERT | ||||||||||||||
|
||||||||||||||||||||||||
2 | 2021-08-28 17:52 |
PBrowFile17.exe 84224064f8554bcea55de014d6d8538fRAT PWS .NET framework Generic Malware PE File .NET EXE PE32 OS Processor Check Browser Info Stealer FTP Client Info Stealer VirusTotal Malware Cryptocurrency wallets Cryptocurrency AutoRuns suspicious privilege MachineGuid Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates executable files unpack itself Collect installed applications Check virtual network interfaces AppData folder installed browsers check Tofsee Ransomware Windows Browser ComputerName DNS Cryptographic key Software crashed |
10
|
11 | 1 | 14.2 | M | 33 | ZeroCERT | |||||||||||||||
|