{"author_url":"https://blog.hatena.ne.jp/Zarat/","version":"1.0","width":"100%","author_name":"Zarat","title":"LetsDefend level 1 alert SOC104 - Malware Detected event-id 36","provider_url":"https://hatena.blog","blog_url":"https://zarat.hatenablog.com/","height":"190","published":"2022-03-04 22:52:24","categories":["LetsDefend","Malware"],"blog_title":"4ensiX","provider_name":"Hatena Blog","description":"Details playbook Define Threat Indicator Check if the malware is quarantined/cleaned Analyze Malware f83fb9ce6a83da58b20685c1d7e1e546 Log Search 92.63.8.47 Check If Someone Requested the C2 Containment Add Artifacts End Details EventID: 36 Event Time: Dec. 1, 2020, 10:23 a.m. Rule: SOC104 - Malware \u2026","image_url":"https://cdn-ak.f.st-hatena.com/images/fotolife/Z/Zarat/20220304/20220304224748.png","type":"rich","url":"https://zarat.hatenablog.com/entry/2022/03/04/225224","html":"<iframe src=\"https://hatenablog-parts.com/embed?url=https%3A%2F%2Fzarat.hatenablog.com%2Fentry%2F2022%2F03%2F04%2F225224\" title=\"LetsDefend level 1 alert SOC104 - Malware Detected event-id 36 - 4ensiX\" class=\"embed-card embed-blogcard\" scrolling=\"no\" frameborder=\"0\" style=\"display: block; width: 100%; height: 190px; max-width: 500px; margin: 10px 0px;\"></iframe>"}