No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2023-01-22 14:04 |
![]() a6280d3f50d1b373d5fa5f45247ac08bPWS[m] RAT PWS .NET framework PDF Suspicious Link SMTP PDF AntiDebug AntiVM PE32 .NET EXE PE File VirusTotal Email Client Info Stealer Malware PDB suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities Check virtual network interfaces suspicious process AppData folder WriteConsoleW IP Check Tofsee Windows Email ComputerName Cryptographic key |
2
|
4 | 3 | 14.8 | M | 41 | ZeroCERT | |||||||||||||||
|