No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2023-12-15 08:38 |
HRSword_v5.0.1.1.exe a60a60af95a32a81795761865b7f3bd9Downloader Malicious Library UPX Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code injection Internet API persistence FTP KeyLogger P2P AntiDebug AntiVM PE32 PE File AutoRuns suspicious privilege Code Injection Check memory Checks debugger Creates executable files Windows utilities Auto service suspicious process AntiVM_Disk VM Disk Size Check Windows |
7.2 | M | ZeroCERT | |||||||||||||||||||
|