win常见应急排查
Common Information
Type Value
UUID 9e382df6-106d-43cd-87ee-dda813613d6f
Fingerprint aafdc59779a00c10
Analysis status DONE
Considered CTI value 0
Text language
Published June 20, 2024, midnight
Added to db Sept. 10, 2024, 7:03 a.m.
Last updated Nov. 17, 2024, 6:54 p.m.
Headline win常见应急排查
Title win常见应急排查
Detected Hints/Tags/Attributes 19/1/11
RSS Feed
Details Id Enabled Feed title Url Added to db
Details 483 CN-SEC 中文网 https://cn-sec.com/feed/ 2024-08-30 22:08
Attributes
Details Type #Events CTI Value
Details Domain 1
www.d99net.net
Details Domain 3
www.huorong.cn
Details File 35
malware.exe
Details File 2125
cmd.exe
Details File 380
notepad.exe
Details Url 1
https://www.d99net.net
Details Url 2
https://www.huorong.cn
Details Windows Registry Key 3
HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRun
Details Windows Registry Key 6
HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRun
Details Windows Registry Key 1
HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionRunOnce
Details Windows Registry Key 2
HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRunOnce