-
Notifications
You must be signed in to change notification settings - Fork 110
Open
Description
Hello,
this is what we are receiving:
Name: VirTool:PowerShell/Posmegz.A
ID: 2147962837
Severity: Severe
Category: Tool
Path: amsi:_R:\PowerHuntShares\PowerHuntShares-main\PowerHuntShares.psm1
Detection Origin: Unknown
Detection Type: Concrete
Detection Source: AMSI
User: NT AUTHORITY\SYSTEM
Process Name: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe
Security intelligence Version: AV: 1.445.25.0, AS: 1.445.25.0, NIS: 1.445.25.0
Engine Version: AM: 1.1.26010.1, NIS: 1.1.26010.1
Regards,
Red.
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
No labels