No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2021-07-30 11:06 |
WUpdate.exe 22e4972a8a73e90a38f379ff527759dcGeneric Malware PowerShell MZ UPX Malicious Library Escalate priviledges KeyLogger Code injection HTTP Internet API ScreenShot Http API AntiDebug AntiVM PE64 OS Processor Check PE File PE32 VirusTotal Malware PDB suspicious privilege Code Injection Check memory Checks debugger Creates executable files unpack itself Windows utilities Disables Windows Security AppData folder sandbox evasion WriteConsoleW Windows Remote Code Execution crashed |
8.6 | M | 30 | ZeroCERT | ||||||||||||||||||
|