CEF:0|Trellix|CMS|9.0.0.916210|MC|malware-callback|9|requestClientApplication=Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; #1atEW5tuNDl0kt579c9.BMWUS) cn2Label=sid cn2=33351211 cs5Label=cncHost cs5=xxx.xx.x.xx spt=55689 smac=00:0c:29:ec:df:a4 cn1Label=vlan cn1=0 cs4Label=link cs4=https:// axhwmps.trellix.com/event_stream/events_for_bot?ev_id\=70252 rt=Jun 29 2020 07:00:34 UTC proto=tcp dst=xxx.xx.x.xx externalId=70252 dmac=00:50:56:be:42:a6 dvchost=xxxx cs6Label=channel cs6=GET http:// colville.com/Gallery/Winterfest/2.jpg HTTP/1.1::~~User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 5.1; Trident/4.0; #1atEW5tuNDl0kt579c9.BMWUS)::~~Host: Colville.com::~~Pragma: no-cache::~~::~~ src=172.17.7.14 cn3Label=cncPort cn3=8080 dpt=8080 request=hxxp://colville.com/Gallery/Winterfest/2.jpg dvc=xx.x.x.xxx requestMethod=GET act=notified cs1Label=sname cs1=Trojan.APT.PingBed devicePayloadId=cc348b62- c628-4c82-8c26-93b8df823cec
malware-callback (Network Security on Central Management)
- Published on Aug 25, 2026
- 1 minute(s) read
Was this article helpful?