No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2024-07-22 11:18 |
Nyexjpw-TORRENTOLD.pif f309fc0fa9fe3fa240901a71700ae650Generic Malware Antivirus PE File .NET EXE PE32 VirusTotal Malware Buffer PE PDB suspicious privilege Check memory Checks debugger buffers extracted Creates shortcut unpack itself suspicious process AppData folder Windows ComputerName Cryptographic key |
6.0 | M | 57 | ZeroCERT | ||||||||||||||||||
|
||||||||||||||||||||||||
2 | 2022-10-01 17:35 |
Rrobknnz-TORRENTOLD.exe 48545b3a32bc83046785f5ef2cacb8f7RAT Generic Malware Antivirus PE32 PE File .NET EXE VirusTotal Malware powershell Buffer PE PDB suspicious privilege Check memory Checks debugger buffers extracted Creates shortcut unpack itself powershell.exe wrote suspicious process AppData folder Windows ComputerName Cryptographic key |
6.6 | M | 53 | ZeroCERT | ||||||||||||||||||
|