Suricata Alerts

Timestamp Source IP Source Port Destination IP Destination Port Protocol GID SID REV Signature Category Severity
2020-05-20 09:05:56.559 45.87.80.66 [VT] 80 192.168.100.179 [VT] 49897 TCP 1 2018959 4 ET POLICY PE EXE or DLL Windows file download HTTP Potential Corporate Privacy Violation 1
2020-05-20 09:05:56.559 45.87.80.66 [VT] 80 192.168.100.179 [VT] 49897 TCP 1 2022053 2 ET CURRENT_EVENTS Likely Evil EXE download from MSXMLHTTP non-exe extension M2 A Network Trojan was detected 1
2020-05-20 09:05:57.093 45.87.80.66 [VT] 80 192.168.100.179 [VT] 49897 TCP 1 2015744 5 ET INFO EXE IsDebuggerPresent (Used in Malware Anti-Debugging) Misc activity 3