No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2024-07-22 11:15 |
![]() 2ca5492f9dbcdaab3facf1768cae5c6dPE File PE64 VirusTotal Malware MachineGuid Check memory Checks debugger unpack itself |
2.6 | M | 49 | ZeroCERT | ||||||||||||||||||
|
||||||||||||||||||||||||
2 | 2024-07-14 17:45 |
![]() 2e12b69ae7aa5d931a6aa3bf554071dfGeneric Malware .NET framework(MSIL) Antivirus PE File .NET EXE PE32 VirusTotal Malware powershell suspicious privilege Check memory Checks debugger Creates shortcut unpack itself powershell.exe wrote suspicious process AppData folder Windows ComputerName Cryptographic key |
5.4 | M | 54 | ZeroCERT | ||||||||||||||||||
|
||||||||||||||||||||||||
3 | 2022-09-26 10:09 |
![]() 35309a7f136e2c60ac74e53d0963a1e1RAT PE File PE64 VirusTotal Malware Check memory Checks debugger unpack itself |
2.4 | 43 | ZeroCERT | |||||||||||||||||||
|