Incident by Severity
88
Critical
11
High
12
Medium
0
Low
96
Unclassified
Action Required
14
Alert Only
99
High Severity
195
For Review
Incident Distribution
17
Affected Hosts
45
Affected Apps
9
Affected Users
Severity
Alert Time
Application
User
Hostname
Operating System
Response Operation
Review Status
Classification
Category
Sub-Category
{{$MMM d, yyyy}} 02:07 AM
csrss
WKF-1001/user
WKF-1001
Windows 10 64-Bit
Morphisec Prevented
Required
Ransomware Mitigation
Malicious-Activity
Ransomware
{{$MMM d, yyyy|-1}} 08:05 AM
explorer.exe
WKF-1001/user
WKF-1001
Windows 10 Pro
Microsoft Defender
Required
Trojan:Win32/Malgent!MSR
Malicious-Activity
Trojan
{{$MMM d, yyyy|-1}} 07:55 AM
Unknown
DESKTOP-D9SR6LO/smgor
DESKTOP-D9SR6LO
Windows 11 Pro
Microsoft Defender
Required
Trojan:Win32/Malgent!MSR
Malicious-Activity
Trojan
{{$MMM d, yyyy|-3}} 04:34 PM
Unknown
DESKTOP-D9SR6LO/smgor
DESKTOP-D9SR6LO
Windows 11 Pro
Morphisec Prevented
Required
Ransom:Win32/Basta.PB!MTB
Malicious-Activity
Ransomware
{{$MMM d, yyyy|-3}} 03:40 PM
WINWORD.EXE
DESKTOP-D9SR6LO/smgor
DESKTOP-D9SR6LO
Windows 11 Pro
Microsoft Defender
Required
Trojan:Win32/WinLNK!MSR
Malicious-Activity
Trojan
{{$MMM d, yyyy|-3}} 08:38 AM
WINWORD.EXE
DESKTOP-D9SR6LO/smgor
DESKTOP-D9SR6LO
Windows 11 Pro
Morphisec Prevented
Required
VirTool:Win64/AzBloodHnd.A
Malicious-Activity
Tool
{{$MMM d, yyyy|-5}} 11:09 AM
dnSpy.exe
DESKTOP-D9SR6LO/smgor
DESKTOP-D9SR6LO
Windows 11 Pro
Microsoft Defender
Required
Trojan:MSIL/AmsiPatch.DA!MTB
Malicious-Activity
Trojan
{{$MMM d, yyyy|-6}} 05:41 AM
Unknown
NT AUTHORITY/SYSTEM
DESKTOP-USER
Windows 10 Pro
Morphisec Prevented
Required
Ransom:Linux/Interlock.A
Malicious-Activity
Ransomware
{{$MMM d, yyyy|-11}} 02:42 PM
ida64.exe
DESKTOP-USER/user
DESKTOP-USER
Windows 10 Pro
Morphisec Prevented
Required
Ransom:Linux/Hellcat.A!MTB
Malicious-Activity
Ransomware
{{$MMM d, yyyy|-11}} 02:39 PM
Unknown
DESKTOP-D9SR6LO\smgor
DESKTOP-D9SR6LO
Windows 11 Pro
Microsoft Defender
Required
Behavior:Win32/AMSI_Patch_T.B13
Malicious-Activity
Suspicious Behavior
{{$MMM d, yyyy|-13}} 06:51 PM
procexp64.exe
DESKTOP-D9SR6LO\smgor
DESKTOP-D9SR6LO
Windows 11 Pro
Microsoft Defender
Required
Behavior:Win32/AMSI_Patch_T.B13
Malicious-Activity
Suspicious Behavior
{{$MMM d, yyyy|-14}} 10:11 PM
Unknown
DESKTOP-D9SR6LO\smgor
DESKTOP-D9SR6LO
Windows 11 Pro
Microsoft Defender
Required
Behavior:Win32/AMSI_Patch_T.B13
Malicious-Activity
Suspicious Behavior
{{$MMM d, yyyy|-14}} 02:11 PM
Unknown
NT AUTHORITY/SYSTEM
DESKTOP-USER
Windows 10 Pro
Microsoft Defender
Required
Trojan:Win32/Malagent!MSR
Malicious-Activity
Trojan
{{$MMM d, yyyy|-17}} 07:08 PM
PipeViewer.exe
NT AUTHORITY/SYSTEM
DESKTOP-USER
Windows 10 Pro
Morphisec Prevented
Required
Trojan:Win32/Malagent!MSR
Malicious-Activity
Trojan
{{$MMM d, yyyy|-17}} 07:03 PM
explorer.exe
DESKTOP-USER/user
DESKTOP-USER
Windows 10 Pro
Morphisec Prevented
Required
Trojan:Win32/Malagent!MSR
Malicious-Activity
Trojan
{{$MMM d, yyyy|-18}} 12:47 AM
Unknown
DESKTOP-D9SR6LO/smgor
DESKTOP-D9SR6LO
Windows 11 Pro
Microsoft Defender
Required
Trojan:Win32/Malagent!MSR
Malicious-Activity
Trojan
{{$MMM d, yyyy|-20}} 01:53 PM
explorer.exe
DESKTOP-D9SR6LO/smgor
DESKTOP-D9SR6LO
Windows 11 Pro
Microsoft Defender
Required
Trojan:PowerShell/Pklotide.A
Malicious-Activity
Trojan
{{$MMM d, yyyy|-21}} 03:17 PM
Unknown
DESKTOP-D9SR6LO\smgor
DESKTOP-D9SR6LO
Windows 11 Pro
Microsoft Defender
Required
Behavior:Win32/AMSI_Patch_T.B13
Malicious-Activity
Suspicious Behavior
{{$MMM d, yyyy|-21}} 02:38 PM
powershell
DESKTOP-USER/user
DESKTOP-USER
Windows 10 64-Bit
Morphisec Prevented
Required
AMSI Bypass (Beta Feature)
Malicious-Activity
Code-Injection
{{$MMM d, yyyy|-24}} 10:01 AM
powershell
DESKTOP-USER/user
DESKTOP-USER
Windows 10 64-Bit
Morphisec Prevented
Required
AMSI Bypass (Beta Feature)
Malicious-Activity
Code-Injection
{{$MMM d, yyyy|-26}} 08:10 PM
powershell
DESKTOP-USER/user
DESKTOP-USER
Windows 10 64-Bit
Morphisec Prevented
Required
AMSI Bypass (Beta Feature)
Malicious-Activity
Code-Injection
{{$MMM d, yyyy|-27}} 01:38 PM
powershell
DESKTOP-USER/user
DESKTOP-USER
Windows 10 64-Bit
Morphisec Prevented
Required
AMSI Bypass (Beta Feature)
Malicious-Activity
Code-Injection
Showing 1 - 50 of 207
Page 1 of 5
