No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2021-04-09 11:38 |
Four.exe a5e1b2c81a61f141540e2e4d14c1e4deAzorult .NET framework Gen1 AsyncRAT backdoor VirusTotal Malware Buffer PE MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files RWX flags setting exploit crash unpack itself Windows utilities Check virtual network interfaces AppData folder AntiVM_Disk sandbox evasion VM Disk Size Check Windows Exploit ComputerName DNS crashed |
2
|
6 | 9.4 | M | 36 | ZeroCERT | ||||||||||||||||
|