Alert Information
Low
- Alert ID
ind:b4ebfd0a1e2447bcb45b3b72c5794e0e:22432964-4748-466960- Composite ID
84393bf974fd44bda943a25a6a7bc27f:ind:b4ebfd0a1e2447bcb45b3b72c5794e0e:22432964-4748-466960- 설명
- A file written to the file-system was classified as Adware/PUP based on its SHA256 hash.
- 호스트
- DWSHIN
- 상태
- new
- 생성 시간
- 2025-12-09 11:49:20
- 업데이트 시간
- 2025-12-09 12:48:20
MITRE ATT&CK
- Tactic
- Malware
- Technique
- PUP
Command Line
"C:\Program Files\Google\Chrome\Application\chrome.exe" --profile-directory="Profile 1"
Raw JSON Data
{"id":"ind:b4ebfd0a1e2447bcb45b3b72c5794e0e:22432964-4748-466960","composite_id":"84393bf974fd44bda943a25a6a7bc27f:ind:b4ebfd0a1e2447bcb45b3b72c5794e0e:22432964-4748-466960","agent_id":"b4ebfd0a1e2447bcb45b3b72c5794e0e","cid":"84393bf974fd44bda943a25a6a7bc27f","description":"A file written to the file-system was classified as Adware/PUP based on its SHA256 hash.","severity":30,"severity_name":"Low","confidence":100,"tactic":"Malware","tactic_id":"CSTA0001","technique":"PUP","technique_id":"CST0013","cmdline":"\u0022C:\\Program Files\\Google\\Chrome\\Application\\chrome.exe\u0022 --profile-directory=\u0022Profile 1\u0022","filename":"chrome.exe","filepath":"\\Device\\HarddiskVolume3\\Program Files\\Google\\Chrome\\Application\\chrome.exe","sha256":"b0668b6596578d5d918c8d29083423c8025bd49328130383841139dd575868c6","status":"new","type":"ldt","created_timestamp":"2025-12-09T02:49:20.947046774Z","updated_timestamp":"2025-12-09T03:48:20.940693364Z","device":{"device_id":"b4ebfd0a1e2447bcb45b3b72c5794e0e","cid":"84393bf974fd44bda943a25a6a7bc27f","agent_version":"7.29.20108.0","hostname":"DWSHIN","local_ip":"26.26.26.1","external_ip":"211.198.135.5","mac_address":"00-ff-15-bf-2c-c0","platform_name":"Windows","os_version":"Windows 11"},"aggregate_id":"aggind:b4ebfd0a1e2447bcb45b3b72c5794e0e:4296718800","CreatedAt":"2025-12-09T11:49:20.9470468+09:00","UpdatedAt":"2025-12-09T12:48:20.9406934+09:00"}
Quick Info
- Severity Low
- Score 30
-
Agent ID
b4ebfd0a1e2447bcb45b3b72c5794e0e
Actions