No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2023-05-14 17:12 |
STnew.exe 9698ef1c3c72a67865b27847f3fcb633Emotet Gen2 Generic Malware UPX Malicious Library AntiDebug AntiVM OS Processor Check PE File PE32 .NET EXE Malware Buffer PE AutoRuns PDB suspicious privilege Code Injection Malicious Traffic Check memory Checks debugger buffers extracted WMI Creates executable files unpack itself Windows utilities Check virtual network interfaces suspicious process AppData folder WriteConsoleW Windows ComputerName Remote Code Execution DNS Cryptographic key DDNS crashed |
1
|
3 | 5 | 16.4 | M | ZeroCERT | ||||||||||||||||
|