Malware Signature Match
Informational
Escalated
ALR-00077 · 2026-05-25T02:58:53Z
Description
Known malware signature (Emotet variant) detected in file on SRV-BACKUP-01. Firewall quarantined the file. User context: k.brown.
Alert Metadata
Endpoint Information
MITRE ATT&CK Mapping
Investigation Timeline
02:58:53
Event ingested by SOC365 Engine
02:58:57
EmilyAI triage started — correlation enrichment
02:59:01
EmilyAI confidence: 88% — escalated to human analyst
02:59:09
Alert assigned to analyst: EmilyAI (auto)
03:00:17
Investigation started — querying SIEM and threat intelligence
03:08:04
Containment action taken — endpoint isolated
03:17:28
Alert resolved — remediation complete
Related Alerts
| ID | Time | Alert | Severity | Status | Host |
|---|---|---|---|---|---|
| ALR-00223 | 5h ago | Certificate Anomaly | Low | Escalated | SRV-BACKUP-01 |
| ALR-00290 | 12h ago | Certificate Anomaly | Low | Investigating | SRV-BACKUP-01 |
| ALR-00297 | 14h ago | Malware Signature Match | Informational | Resolved | WS-LAP-010 |
| ALR-00385 | 14h ago | Malware Signature Match | Medium | Resolved | AP-WIFI-03 |
| ALR-00377 | 21h ago | Malware Signature Match | Low | Investigating | SRV-FILE-01 |