No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2023-06-01 18:51 |
ventascry.exe 8a1e832674033cb7fdd73a8cf55971fdNSIS UPX Malicious Library PE File PE32 OS Processor Check DLL Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware AutoRuns suspicious privilege Check memory Checks debugger buffers extracted WMI Creates executable files unpack itself Check virtual network interfaces AppData folder Tofsee Windows Browser Email ComputerName Cryptographic key Software crashed keylogger |
2 | 2 | 11.4 | M | 45 | ZeroCERT | ||||||||||||||||
|
||||||||||||||||||||||||
2 | 2023-05-25 17:49 |
newamka2.1.exe 21ffcbf147759f82745f07bfdb0662f4NSIS UPX Malicious Library PE File PE32 OS Processor Check DLL Malware download AveMaria NetWireRC VirusTotal Malware AutoRuns MachineGuid Check memory Creates executable files unpack itself AppData folder Windows RAT ComputerName DNS DDNS keylogger |
5 | 4 | 5.8 | M | 37 | ZeroCERT | ||||||||||||||||
|