No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2021-10-16 12:56 |
VWT_0397467389948-039874674.ex... eb84b407ad189ab0024269c8ccb42ddbRAT PWS .NET framework Generic Malware DNS AntiDebug AntiVM PE File PE32 .NET EXE VirusTotal Malware Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Check memory Checks debugger buffers extracted unpack itself Windows utilities suspicious process WriteConsoleW human activity check Windows ComputerName DNS DDNS |
2 | 1 | 15.0 | 26 | ZeroCERT | |||||||||||||||||
|
||||||||||||||||||||||||
2 | 2021-10-14 16:55 |
UFC~0398763535603876534536789.... c1bd58337e98aec86544e0dd33924e61PWS .NET framework Generic Malware UPX DNS AntiDebug AntiVM PE File PE32 OS Processor Check .NET EXE Malware download Nanocore VirusTotal Malware c&c Buffer PE AutoRuns suspicious privilege MachineGuid Code Injection Check memory Checks debugger buffers extracted unpack itself Windows utilities suspicious process WriteConsoleW human activity check Windows ComputerName DNS DDNS |
2 | 2 | 13.2 | 10 | ZeroCERT | |||||||||||||||||
|