| High |
80% |
ldt |
DWSHIN |
A process appears to be executing code with Rundll32, which can be used by attackers to evade detection. Investigate the command line and process tree. |
Defense Evasion |
12-09 12:20 |
|
| High |
80% |
ldt |
DWSHIN |
A process appears to be executing code with Rundll32, which can be used by attackers to evade detection. Investigate the command line and process tree. |
Defense Evasion |
12-09 12:19 |
|
| Low |
100% |
ldt |
DWSHIN |
A file written to the file-system was classified as Adware/PUP based on its SHA256 hash. |
Malware |
12-09 11:49 |
|
| Low |
100% |
ldt |
DWSHIN |
A file written to the file-system was classified as Adware/PUP based on its SHA256 hash. |
Malware |
12-09 11:49 |
|
| Medium |
80% |
ldt |
DWSHIN |
A suspicious process related to a likely malicious file was launched. Review any binaries involved as they might be related to malware. |
Post-Exploit |
12-09 11:43 |
|
| High |
80% |
ldt |
DWSHIN |
A process has written a kernel driver to disk that CrowdStrike analysts have deemed vulnerable. Attackers can use vulnerable drivers to gain privileged access to a system. Review the process tree and file details. |
Defense Evasion |
12-09 11:43 |
|
| High |
70% |
ldt |
DWSHIN |
A file written to the file system meets the on-sensor machine learning high confidence threshold for malicious files. Detection is based on a high degree of entropy, packing, anti-malware evasion, or other similarity to known malware. |
Machine Learning |
12-09 11:36 |
|
| High |
70% |
ldt |
DWSHIN |
A file written to the file system meets the on-sensor machine learning high confidence threshold for malicious files. Detection is based on a high degree of entropy, packing, anti-malware evasion, or other similarity to known malware. |
Machine Learning |
12-09 11:32 |
|
| High |
70% |
ldt |
DWSHIN |
A file written to the file system meets the on-sensor machine learning high confidence threshold for malicious files. Detection is based on a high degree of entropy, packing, anti-malware evasion, or other similarity to known malware. |
Machine Learning |
12-09 11:32 |
|
| Low |
100% |
ldt |
DWSHIN |
A file written to the file-system was classified as Adware/PUP based on its SHA256 hash. |
Malware |
12-09 11:29 |
|
| Low |
100% |
ldt |
DWSHIN |
A file written to the file-system was classified as Adware/PUP based on its SHA256 hash. |
Malware |
12-09 11:29 |
|