No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2023-01-28 23:05 |
![]() 99b51e9c3cf95537755a6875ea7ab9c8PWS[m] PWS .NET framework Generic Malware Antivirus SMTP KeyLogger AntiDebug AntiVM PE32 .NET EXE PE File Browser Info Stealer Malware download FTP Client Info Stealer VirusTotal Email Client Info Stealer Malware PDB suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut unpack itself Windows utilities Check virtual network interfaces suspicious process WriteConsoleW IP Check Windows Browser Email ComputerName DNS Cryptographic key DDNS Software crashed keylogger |
1
|
2 | 5 | 14.6 | M | 40 | ZeroCERT | |||||||||||||||
|
||||||||||||||||||||||||
2 | 2023-01-27 09:29 |
![]() a2e898a0d8e69dcc2d47202fd1cb8fb2PWS .NET framework PE32 .NET EXE PE File VirusTotal Malware PDB Check memory Checks debugger unpack itself ComputerName |
2.4 | 24 | ZeroCERT | |||||||||||||||||||
|