Interactive Demo — Simulated data only. Back to SOC in a Box
SOC365 Dashboard
Acme Legal Services Ltd Live 15:26:11 UTC

Malware Signature Match

Low Resolved
ALR-00226 · 2026-04-09T20:23:47Z

Description

Known malware signature (Emotet variant) detected in file on WS-PC-003. Attack Surface Scanner quarantined the file. User context: e.evans.

Alert Metadata

Alert ID
ALR-00226
Timestamp
2026-04-09T20:23:47Z
Severity
Low
Status
Resolved
Detection Source
Attack Surface Scanner
Assigned Analyst
EmilyAI (auto)

Endpoint Information

Hostname
WS-PC-003
User Account
e.evans
Source IP
45.154.148.240
Destination IP
10.1.151.79
Origin Country
UA Ukraine

MITRE ATT&CK Mapping

Tactic
Execution
Technique
T1204.002
Reference
attack.mitre.org/techniques/T1204.002

Investigation Timeline

20:23:47 Event ingested by SOC365 Engine
20:23:51 EmilyAI triage started — correlation enrichment
20:24:02 EmilyAI confidence: 98% — escalated to human analyst
20:24:25 Alert assigned to analyst: EmilyAI (auto)
20:26:23 Investigation started — querying SIEM and threat intelligence
20:30:25 Containment action taken — endpoint isolated
20:38:23 Alert resolved — remediation complete

Related Alerts

ID Time Alert Severity Status Host
ALR-00033 11h ago Malware Signature Match Informational False Positive WS-PC-001
ALR-00467 17h ago Malware Signature Match Low Open AP-WIFI-03
ALR-00466 1d ago Lateral Movement Detected Low Resolved WS-PC-003
ALR-00070 1d ago Lateral Movement Detected Low Resolved WS-PC-003
ALR-00142 1d ago Malware Signature Match Medium Resolved FW-EDGE-01