No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2021-10-07 18:23 |
Sharefolder.exe 168f3e8c4657a0fe90a2338f3971f6edRAT Gen1 Generic Malware Malicious Library UPX AntiDebug AntiVM PE File PE32 OS Processor Check MSOffice File PNG Format JPEG Format .NET EXE DLL PE64 VirusTotal Malware AutoRuns MachineGuid Code Injection Malicious Traffic Check memory Checks debugger buffers extracted Creates executable files ICMP traffic RWX flags setting unpack itself Windows utilities Check virtual network interfaces AppData folder AntiVM_Disk suspicious TLD VM Disk Size Check Tofsee Windows ComputerName DNS crashed |
14
|
20 | 4 | 5 | 12.8 | M | 24 | ZeroCERT | ||||||||||||||
|