Malware Signature Match
Medium
Open
ALR-00187 · 2026-04-09T11:52:53Z
Description
Known malware signature (Emotet variant) detected in file on WS-LAP-012. Cloud Connector quarantined the file. User context: n.clark.
Alert Metadata
Endpoint Information
MITRE ATT&CK Mapping
Investigation Timeline
11:52:53
Event ingested by SOC365 Engine
11:52:55
EmilyAI triage started — correlation enrichment
11:53:02
EmilyAI confidence: 90% — escalated to human analyst
11:53:20
Alert assigned to analyst: James Okonkwo
11:55:00
Investigation started — querying SIEM and threat intelligence
Related Alerts
| ID | Time | Alert | Severity | Status | Host |
|---|---|---|---|---|---|
| ALR-00044 | 11m ago | Lateral Movement Detected | Low | Resolved | WS-LAP-012 |
| ALR-00350 | 1h ago | Privilege Escalation Attempt | Informational | Open | WS-LAP-012 |
| ALR-00157 | 2h ago | Suspicious PowerShell Execution | Medium | Resolved | WS-LAP-012 |
| ALR-00131 | 7h ago | Unauthorised USB Device | Low | Resolved | WS-LAP-012 |
| ALR-00263 | 8h ago | Failed MFA Challenge | Critical | Escalated | WS-LAP-012 |