{"version":"1.0","image_url":"https://cdn-ak.f.st-hatena.com/images/fotolife/Z/Zarat/20220311/20220311204550.png","author_name":"Zarat","type":"rich","categories":["LetsDefend"],"height":"190","author_url":"https://blog.hatena.ne.jp/Zarat/","width":"100%","description":"Details playbook Define Threat Indicator Check if the malware is quarantined/cleaned Analyze Malware cdde99520664ac313d43964620019c61 Endpoint - JohnComputer Process History Logsearch Check If Someone Requested the C2 Containment Add Artifacts End Details EventID: 31 Event Time: Oct. 29, 2020, 7:55 \u2026","provider_name":"Hatena Blog","url":"https://zarat.hatenablog.com/entry/2022/03/11/205205","published":"2022-03-11 20:52:05","title":"LetsDefend level 1 alert SOC104 - Malware Detected event-id 31","blog_title":"4ensiX","blog_url":"https://zarat.hatenablog.com/","html":"<iframe src=\"https://hatenablog-parts.com/embed?url=https%3A%2F%2Fzarat.hatenablog.com%2Fentry%2F2022%2F03%2F11%2F205205\" title=\"LetsDefend level 1 alert SOC104 - Malware Detected event-id 31 - 4ensiX\" class=\"embed-card embed-blogcard\" scrolling=\"no\" frameborder=\"0\" style=\"display: block; width: 100%; height: 190px; max-width: 500px; margin: 10px 0px;\"></iframe>","provider_url":"https://hatena.blog"}