No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2021-10-27 09:40 |
E7pPa8kXU2X9H8nyCZseBfpdf.exe e168c49cc388f05d310f780f70661c47Generic Malware AntiDebug AntiVM PE File PE32 .NET EXE VirusTotal Malware Buffer PE AutoRuns suspicious privilege Code Injection Check memory Checks debugger buffers extracted WMI RWX flags setting unpack itself Windows ComputerName Cryptographic key crashed |
10.4 | 19 | ZeroCERT | |||||||||||||||||||
|
||||||||||||||||||||||||
2 | 2021-10-27 09:37 |
A67gmDqdYqpHVq5d122pdf.exe 6318403488d61f1b6827886675f4180fGeneric Malware SMTP KeyLogger AntiDebug AntiVM PE File PE32 .NET EXE Browser Info Stealer FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware AutoRuns suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted unpack itself Check virtual network interfaces IP Check Tofsee Windows Browser Email ComputerName DNS Cryptographic key DDNS Software crashed |
2
|
4 | 3 | 13.2 | 24 | ZeroCERT | ||||||||||||||||
|