No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2023-04-12 09:14 |
kXFpZBb.exe 46fabd3f430861f683716bc8857de68dEmotet Hide_EXE Generic Malware UPX Malicious Library Antivirus PE32 PE File VirusTotal Malware powershell AutoRuns suspicious privilege Check memory Checks debugger Creates shortcut unpack itself Windows utilities powershell.exe wrote suspicious process AntiVM_Disk WriteConsoleW VM Disk Size Check Windows ComputerName Remote Code Execution Cryptographic key |
6.4 | M | 45 | ZeroCERT | ||||||||||||||||||
|