Malware Signature Match
Medium
Investigating
ALR-00102 · 2026-05-22T06:28:46Z
Description
Known malware signature (Emotet variant) detected in file on SRV-WEB-01. Endpoint Agent quarantined the file. User context: d.walker.
Alert Metadata
Endpoint Information
MITRE ATT&CK Mapping
Investigation Timeline
06:28:46
Event ingested by SOC365 Engine
06:28:47
EmilyAI triage started — correlation enrichment
06:28:56
EmilyAI confidence: 91% — escalated to human analyst
06:29:07
Alert assigned to analyst: Sarah Chen
06:30:51
Investigation started — querying SIEM and threat intelligence
Related Alerts
| ID | Time | Alert | Severity | Status | Host |
|---|---|---|---|---|---|
| ALR-00002 | 6h ago | Malware Signature Match | Low | Open | FW-EDGE-01 |
| ALR-00111 | 9h ago | Malware Signature Match | Informational | Open | SRV-SQL-01 |
| ALR-00266 | 22h ago | Certificate Anomaly | Informational | Escalated | SRV-WEB-01 |
| ALR-00462 | 22h ago | Malware Signature Match | Informational | Investigating | WS-LAP-011 |
| ALR-00151 | 23h ago | Certificate Anomaly | High | Open | SRV-WEB-01 |