CEF:0|Trellix|MPS|9.0.2.925495|RO|riskware-object|1|rt=Oct 22 2020 09:43:47 UTC start=Oct 22 2020 09:15:57 UTC end=Oct 22 2020 09:43:47 UTC c6a2=2011::1:4d84:9b6e c6a2Label=Victim IP c6a3=2011::1:13f5:7d67 c6a3Label=Attacker IP request=xx.x.x.xx/30dbe64027e570ada595c1e7b89664db.zip fname=30dbe64027e570ada595c1e7b89664db.zip fileType=zip cs1Label=sname cs1=FE_Adware_Searchbar act=notified dvc=xx.x.x.xxx dvchost=abc.mrl.trellix.com fileHash=904478b16474f63737389b8244a66dca smac=d8:9d:67:17:19:71 dmac=d8:9d:67:17:24:75 fsize=17347 spt=50998 dpt=80 cn1Label=vlan cn1=0 requestMethod=GET externalId=224 devicePayloadId=68119bb0-bf35-4124-9af3-13c27c7ebdaa msg=risk ware detected:116 cs4Label=link cs4=https://abc.mrl.trellix.com/detection/objects?uuid\=68119bb0-bf35-4124- 9af3-13c27c7ebdaa flexString1Label=sha256sum flexString1=ea74197e0337a03dd6c2565d37d37dec2e0595747b99db3f4094a686f06ef390 .
riskware-object (IPv6) (Network Security)
- Published on Aug 25, 2026
- 1 minute(s) read
Was this article helpful?