No | Date | Request | Urls | Hosts | IDS | Rule | Score | Zero | VT | Player | Etc | |||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1 | 2025-04-21 09:49 |
![]() 38836c26314605862f3ca3bfe0936b46AsyncRAT task schedule Downloader Admin Tool (Sysinternals etc ...) Malicious Library ASPack Malicious Packer .NET framework(MSIL) UPX Create Service Socket DGA Http API ScreenShot Escalate priviledges Steal credential PWS Sniff Audio HTTP DNS Code inject DarkComet VirusTotal Malware Buffer PE AutoRuns PDB suspicious privilege MachineGuid Code Injection Check memory Checks debugger buffers extracted Creates executable files ICMP traffic unpack itself Windows utilities suspicious process AppData folder WriteConsoleW human activity check Windows ComputerName RCE DNS DDNS keylogger |
2 | 2 | 18.6 | M | 65 | ZeroCERT | ||||||||||||||||
|