Malware Signature Match
Medium
Open
ALR-00190 · 2026-04-06T02:08:30Z
Description
Known malware signature (Emotet variant) detected in file on SRV-WEB-01. SOC365 Engine quarantined the file. User context: a.wilson.
Alert Metadata
Endpoint Information
MITRE ATT&CK Mapping
Investigation Timeline
02:08:30
Event ingested by SOC365 Engine
02:08:32
EmilyAI triage started — correlation enrichment
02:08:40
EmilyAI confidence: 88% — escalated to human analyst
02:08:52
Alert assigned to analyst: Marcus Webb
02:11:22
Investigation started — querying SIEM and threat intelligence
Related Alerts
| ID | Time | Alert | Severity | Status | Host |
|---|---|---|---|---|---|
| ALR-00222 | 7h ago | Malware Signature Match | Low | Investigating | SRV-FILE-01 |
| ALR-00147 | 8h ago | Certificate Anomaly | Medium | False Positive | SRV-WEB-01 |
| ALR-00380 | 16h ago | Kerberoasting Attempt | Medium | Escalated | SRV-WEB-01 |
| ALR-00264 | 18h ago | Malware Signature Match | Informational | Resolved | SRV-BACKUP-01 |
| ALR-00441 | 22h ago | Malware Signature Match | Medium | Resolved | SRV-DC-01 |