No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2023-03-07 09:51 |
kdnfkjs.sfx.exe a8a6182341c07e476d3b2e4ae24fbb14RAT Confuser .NET UPX AntiDebug AntiVM .NET EXE PE File PE32 VirusTotal Malware suspicious privilege Code Injection Check memory Checks debugger unpack itself |
6.6 | M | 47 | ZeroCERT | ||||||||||||||||||
|
||||||||||||||||||||||||
2 | 2021-10-20 17:52 |
migfbewnaeopmguywjfffrvgqg.exe 2c4879e89081ba55d518f1c457072ac3NPKI email stealer Generic Malware Malicious Library UPX Malicious Packer DNS Code injection KeyLogger Escalate priviledges Downloader persistence AntiDebug AntiVM PE File PE32 .NET EXE PE64 OS Processor Check DLL Browser Info Stealer VirusTotal Email Client Info Stealer Malware Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Check memory Checks debugger buffers extracted WMI Creates executable files unpack itself AntiVM_Disk VM Disk Size Check human activity check installed browsers check Windows Browser Email ComputerName DNS Cryptographic key DDNS crashed |
2 | 1 | 13.4 | M | 24 | ZeroCERT | ||||||||||||||||
|