Interactive Demo — Simulated data only. Back to SOC in a Box
SOC365 Dashboard
Acme Legal Services Ltd Live 13:55:02 UTC

Malware Signature Match

Informational Investigating
ALR-00078 · 2026-04-06T13:05:51Z

Description

Known malware signature (Emotet variant) detected in file on WS-PC-006. DecoyPulse quarantined the file. User context: s.jones.

Alert Metadata

Alert ID
ALR-00078
Timestamp
2026-04-06T13:05:51Z
Severity
Informational
Status
Investigating
Detection Source
DecoyPulse
Assigned Analyst
EmilyAI (auto)

Endpoint Information

Hostname
WS-PC-006
User Account
s.jones
Source IP
103.61.216.180
Destination IP
10.0.199.15
Origin Country
IR Iran

MITRE ATT&CK Mapping

Tactic
Execution
Technique
T1204.002
Reference
attack.mitre.org/techniques/T1204.002

Investigation Timeline

13:05:51 Event ingested by SOC365 Engine
13:05:53 EmilyAI triage started — correlation enrichment
13:06:04 EmilyAI confidence: 80% — escalated to human analyst
13:06:22 Alert assigned to analyst: EmilyAI (auto)
13:07:08 Investigation started — querying SIEM and threat intelligence

Related Alerts

ID Time Alert Severity Status Host
ALR-00246 3h ago Malware Signature Match High Open SRV-BACKUP-01
ALR-00155 3h ago Malware Signature Match Low Investigating AP-WIFI-03
ALR-00137 10h ago Credential Stuffing Attempt High Investigating WS-PC-006
ALR-00472 11h ago Certificate Anomaly Low Escalated WS-PC-006
ALR-00292 19h ago Lateral Movement Detected High Investigating WS-PC-006