No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2022-04-17 09:00 |
BASDL_093876533683-39876353678... 5bbb68e81d7777d72512c1e848e67d4cAdmin Tool (Sysinternals etc ...) PE32 .NET EXE PE File VirusTotal Malware Check memory Checks debugger unpack itself |
2.2 | 30 | guest | |||||||||||||||||||
|
||||||||||||||||||||||||
2 | 2021-10-07 11:26 |
BASDL_093876533683-39876353678... 5bbb68e81d7777d72512c1e848e67d4cGeneric Malware Admin Tool (Sysinternals etc ...) DNS AntiDebug AntiVM PE File PE32 .NET EXE VirusTotal Malware Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Check memory Checks debugger buffers extracted Creates executable files unpack itself Windows utilities suspicious process AppData folder WriteConsoleW human activity check Windows ComputerName DNS DDNS |
2 | 1 | 16.0 | 30 | ZeroCERT | |||||||||||||||||
|