Interactive Demo — Simulated data only. Back to SOC in a Box
SOC365 Dashboard
Acme Legal Services Ltd Live 18:03:15 UTC

Malware Signature Match

High Open
ALR-00412 · 2026-05-25T00:24:20Z

Description

Known malware signature (Emotet variant) detected in file on SRV-DC-01. Attack Surface Scanner quarantined the file. User context: e.evans.

Alert Metadata

Alert ID
ALR-00412
Timestamp
2026-05-25T00:24:20Z
Severity
High
Status
Open
Detection Source
Attack Surface Scanner
Assigned Analyst
Emma Richardson

Endpoint Information

Hostname
SRV-DC-01
User Account
e.evans
Source IP
91.153.195.8
Destination IP
10.0.83.231
Origin Country
IN India

MITRE ATT&CK Mapping

Tactic
Execution
Technique
T1204.002
Reference
attack.mitre.org/techniques/T1204.002

Investigation Timeline

00:24:20 Event ingested by SOC365 Engine
00:24:22 EmilyAI triage started — correlation enrichment
00:24:28 EmilyAI confidence: 90% — escalated to human analyst
00:24:36 Alert assigned to analyst: Emma Richardson
00:27:04 Investigation started — querying SIEM and threat intelligence

Related Alerts

ID Time Alert Severity Status Host
ALR-00090 2h ago Ransomware Behaviour Detected Medium Escalated SRV-DC-01
ALR-00490 3h ago Rogue DHCP Server High Open SRV-DC-01
ALR-00376 5h ago Unusual Outbound Traffic High Escalated SRV-DC-01
ALR-00002 6h ago Malware Signature Match Low Open FW-EDGE-01
ALR-00458 9h ago Insider Threat Indicator Low Investigating SRV-DC-01