| Timestamp (UTC) | Detection Name | Target Name / Type | Target Hash (SHA256) | Initiator Process | Final Result | Sensor | Final Source | All Engine Detections (engine: {file_rep, hti_rep, url_rep, cert_rep}) | | | | | | |
| 2025-09-11 05:20:23 | ti!0B3D7BD94996 | ...\\Downloads\\...c11c.exe | 0b3d7b...c11c | explorer.exe | Quarantined | section execute | hti | hti:{2,2,0,[]},cache:{0,0,0,[]},uwp:{0,0,0,[]},signature:{0,50,0,[]},trust-dat:{2,2,0,[]},hti:{2,2,0,[]},rp-s:{0,1,0,[]},av:{0,50,0,[]},neo:{0,50,0,[]} | | | | | | |
| 2025-09-11 15:57:39 | Trojan:Script/SuspiciousPowershell.D | [memory] app: powershell.exe | N/A | powershell.exe | Infected | IAntiMalware | neo | neo:{0,1,0,[]},cache:{0,0,0,[]},signature:{0,0,0,[]},rp-fileless:{45,45,0,[]},av:{0,50,0,[]},neo:{0,1,0,[]} | | | | | | |
| 2025-09-11 15:57:41 | Trojan:Script/SuspiciousPowershell.D | [memory] app: powershell.exe | N/A | powershell.exe | Infected | IAntiMalware | cache | cache:{0,1,0,[]},cache:{0,1,0,[]} | | | | | | |
| 2025-09-11 15:59:03 | ti!9006CC5EB7A7 | ...\\Downloads\\...7434.js | 9006cc...7434 | N/A (ods) | Quarantined | ods | hti | hti:{2,2,0,[]},cache:{0,0,0,[]},uwp:{0,0,0,[]},signature:{0,50,0,[]},hti:{2,2,0,[]},rp-s:{0,0,0,[]},av:{0,50,0,[]},neo:{0,50,0,[]} | | | | | | |
| 2025-09-11 15:59:13 | ti!D38FEE12D409 | ...\\Temp\\...\\dEgFCsv.exe | d38fee...b33e | wscript.exe | Quarantined | section execute | hti | hti:{2,2,0,[]},cache:{0,0,0,[]},uwp:{0,0,0,[]},signature:{0,50,0,[]},trust-dat:{2,2,0,[]},hti:{2,2,0,[]},rp-s:{0,1,0,[]},av:{0,50,0,[]},neo:{0,50,0,[]} | | | | | | |
| 2025-09-11 15:59:36 | hti!9189fbd1 | ...\\Temp\\...\\XW6KHnp.exe | d38fee...b33e | wscript.exe | Quarantined | section execute | hti | hti:{2,2,0,[]},cache:{0,0,0,[]},uwp:{0,0,0,[]},signature:{0,50,0,[]},trust-dat:{2,2,0,[]},hti:{2,2,0,[]},rp-s:{0,1,0,[]},av:{0,50,0,[]},neo:{0,50,0,[]} | | | | | | |
| 2025-09-11 16:42:36 | Trojan:Script/Asyncrat.B!1 | ...\\Downloads\\...4430.vbs | 12c3d3...4430 | VBScript | Quarantined | IAntiMalware | neo | neo:{0,1,0,[]},cache:{0,0,0,[]},signature:{0,50,0,[]},rp-fileless:{0,50,0,[]},av:{0,50,0,[]},neo:{0,1,0,[]} | | | | | | |
| 2025-09-11 16:45:58 | Trojan:Script/SuspiciousPowershell.D | [memory] app: powershell.exe | N/A | powershell.exe | Infected | IAntiMalware | neo | neo:{0,1,0,[]},cache:{0,0,0,[]},signature:{0,0,0,[]},rp-fileless:{45,45,0,[]},av:{0,50,0,[]},neo:{0,1,0,[]} | | | | | | |
| 2025-09-11 16:46:00 | Trojan:Script/SuspiciousPowershell.D | [memory] app: powershell.exe | N/A | powershell.exe | Infected | IAntiMalware | cache | cache:{0,1,0,[]},cache:{0,1,0,[]} | | | | | | |
| 2025-09-13 00:20:47 | ti!0B3D7BD94996 | ...\\Downloads\\...c11c.exe | 0b3d7b...c11c | N/A (ods) | Quarantined | ods | hti | hti:{2,2,0,[]},cache:{0,0,0,[]},uwp:{0,0,0,[]},signature:{0,50,0,[]},trust-dat:{2,2,0,[]},hti:{2,2,0,[]},rp-s:{0,1,0,[]},av:{0,50,0,[]},neo:{0,50,0,[]} | | | | | | |
| 2025-09-13 00:22:50 | ti!3811770F5C23 | ...\\Temp\\gjzunw.exe | 381177...755c | powershell.exe | Quarantined | section execute | rp-s | rp-s:{1,1,0,[45]},cache:{0,0,0,[]},uwp:{0,0,0,[]},signature:{0,50,0,[]},trust-dat:{50,50,0,[45]},hti:{50,50,0,[45]},rp-s:{1,1,0,[45]},av:{0,50,0,[]},neo:{0,50,0,[]} | | | | | | |
| 2025-09-13 00:24:28 | AMSI-FZI!E97D61EAFE44 | [memory] app: powershell.exe | N/A | powershell.exe | Infected | IAntiMalware | av | av:{0,1,0,[]},cache:{0,0,0,[]},signature:{0,0,0,[]},rp-fileless:{45,45,0,[]},av:{0,1,0,[]},neo:{0,1,0,[]} | | | | | | |
| 2025-09-13 00:25:06 | ti!3811770F5C23 | ...\\Temp\\jqmpvn.exe | 381177...755c | powershell.exe | Quarantined | section execute | rp-s | rp-s:{1,1,0,[45]},cache:{0,0,0,[]},uwp:{0,0,0,[]},signature:{0,50,0,[]},trust-dat:{50,50,0,[45]},hti:{50,50,0,[45]},rp-s:{1,1,0,[45]},av:{0,50,0,[]},neo:{0,50,0,[]} | | | | | | |
| 2025-09-13 00:25:59 | Trojan:Script/Remcos.VDN | ...\\Downloads\\...2b45.vbs | e867d9...2b45 | VBScript | Quarantined | IAntiMalware | neo | neo:{0,1,0,[]},cache:{0,0,0,[]},signature:{0,50,0,[]},rp-fileless:{0,50,0,[]},av:{0,50,0,[]},neo:{0,1,0,[]} | | | | | | |
| 2025-09-13 00:52:38 | ti!1B3C1BF3BFE8 | ...\\Downloads\\...d278.bat | 1b3c1b...d278 | explorer.exe | Quarantined | section execute | hti | hti:{2,2,0,[]},cache:{0,0,0,[]},uwp:{0,0,0,[]},signature:{0,50,0,[]},trust-dat:{0,50,0,[]},hti:{2,2,0,[]},rp-s:{0,0,0,[]},av:{0,50,0,[]},neo:{0,50,0,[]} | | | | | | |
| 2025-09-13 01:05:23 | ti!EAD0485D49C8 | ...\\Downloads\\...524c.exe | ead048...524c | explorer.exe | Quarantined | section execute | hti | hti:{2,2,0,[]},cache:{0,0,0,[]},uwp:{0,0,0,[]},signature:{0,50,0,[]},trust-dat:{2,2,0,[]},hti:{2,2,0,[]},rp-s:{2,2,0,[]},av:{0,50,0,[]},neo:{0,50,0,[]} | | | | | | |
| 2025-09-13 01:07:58 | ti!DF847F7AF404 | ...\\Desktop\\...524c.exe | df847f...2dd5 | msedge.exe | Quarantined | IOfficeAntivirus | rp-s | rp-s:{1,1,70,[]},cache:{0,0,0,[]},signature:{0,50,0,[]},trust-dat:{50,50,70,[]},hti:{50,50,70,[]},rp-s:{1,1,70,[]},av:{0,50,0,[]},neo:{0,50,0,[]} | | | | | | |
| 2025-09-13 01:09:07 | ti!276058E69F94 | ...\\Desktop\\...524c.exe | 276058...d963 | msedge.exe | Quarantined | IOfficeAntivirus | rp-s | rp-s:{1,1,70,[]},cache:{0,0,0,[]},signature:{0,50,0,[]},trust-dat:{50,50,70,[]},hti:{50,50,70,[]},rp-s:{1,1,70,[]},av:{0,50,0,[]},neo:{0,50,0,[]} | | | | | | |
| 2025-09-13 01:09:37 | ti!276058E69F94 | ...\\Downloads\\...524c.exe | 276058...d963 | msedge.exe | Quarantined | IOfficeAntivirus | rp-s | rp-s:{1,1,70,[]},cache:{0,0,0,[]},signature:{0,50,0,[]},trust-dat:{50,50,70,[]},hti:{50,50,70,[]},rp-s:{1,1,70,[]},av:{0,50,0,[]},neo:{0,50,0,[]} | | | | | | |
| | | | | | | | | | | | | | |