mirror of
https://github.com/splunk/security_content
synced 2026-06-08 17:32:49 +00:00
21 lines
586 B
YAML
21 lines
586 B
YAML
author: Patrick Bareiss, Splunk
|
|
date: '2020-04-29'
|
|
description: Perform a static and dynamic malware analysis for the malicious file.
|
|
Use the findings for further response tasks.
|
|
id: 6ee5c067-8228-4926-abb2-54f2c59d726e
|
|
name: Analyze Malicious File
|
|
tags:
|
|
analytic_story:
|
|
- 'Emotet Malware DHS Report TA18-201A '
|
|
- Hidden Cobra Malware
|
|
- Lateral Movement
|
|
- Malicious PowerShell
|
|
- Orangeworm Attack Group
|
|
- Possible Backdoor Activity Associated With MUDCARP Espionage Campaigns
|
|
- Ransomware
|
|
- SamSam Ransomware
|
|
product:
|
|
- Splunk Phantom
|
|
type: response
|
|
version: 1
|