No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2021-10-16 13:29 |
vbc.exe cc92dedec89f09b08729784048f1060bAdmin Tool (Sysinternals etc ...) Malicious Library UPX PE File PE32 VirusTotal Malware RWX flags setting unpack itself Tofsee crashed |
1
|
2 | 1 | 2.8 | M | 34 | ZeroCERT | |||||||||||||||
|
||||||||||||||||||||||||
2 | 2021-10-16 13:26 |
Oxqfxohrjqryauuonybvsdergonzry... a8521386eacf0f858077249faa381763Malicious Library UPX Create Service DGA Socket Steal credential DNS Internet API Code injection Sniff Audio HTTP KeyLogger FTP Escalate priviledges Downloader ScreenShot Http API P2P AntiDebug AntiVM PE File PE32 Emotet VirusTotal Malware AutoRuns Code Injection buffers extracted Creates executable files RWX flags setting unpack itself Windows utilities suspicious process WriteConsoleW Tofsee Windows ComputerName crashed |
3
|
4 | 1 | 9.2 | M | 22 | ZeroCERT | |||||||||||||||
|