No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2022-05-20 17:37 |
![]() 25d86a1736a06b7f5ec097b0f633276cPWS[m] Generic Malware UPX Malicious Library Admin Tool (Sysinternals etc ...) Antivirus Create Service DGA Socket ScreenShot DNS Internet API Code injection Sniff Audio HTTP Steal credential KeyLogger P2P Downloader Escalate priviledges FTP Http API Anti Emotet VirusTotal Malware powershell Buffer PE suspicious privilege Code Injection Check memory Checks debugger buffers extracted Creates shortcut Creates executable files RWX flags setting unpack itself Windows utilities suspicious process WriteConsoleW Tofsee Windows Discord ComputerName RCE DNS Cryptographic key crashed |
1
|
2 | 3 | 13.2 | 49 | ZeroCERT | ||||||||||||||||
|