MEDIUM Perl script connecting to network

NEW ID: #1726 | Created: 2026-01-15 15:59:06
XDR Console
1
Alerts
1
Hosts
3
Files
0
Network
Incident Overview

Process action type = execution AND target process cmd = *socket*connect*sock_stream*, *socket*sock_stream*connect* AND target process name = perl

1
2026-01-15 15:59
Unassigned
XDR BIOC
Execution
Affected Hosts & Users
inbridge-42\dsst
File Artifacts 3
File Name Path SHA256 Signature Verdict Actions
perl - 38d70f54fd18d614e9e6cc35c960b45f54e7b991894b8308e704ae9953c86ce4 SIGNATURE_UNAVAILABLE UNKNOWN VT
sshd - 4cc983fa8f3a26626981dbbe79113348fb86cca3ec426f6af5fabd08215fd5e1 SIGNATURE_UNAVAILABLE UNKNOWN VT
timeout - 375eaa8774baf7667515932c4d6fa2e31a2c21e9c50f152a27c4c6a718374ebe SIGNATURE_UNAVAILABLE UNKNOWN VT
Network Artifacts 0
No network artifacts found for this incident
Process Artifacts 1
Process Command Line Parent Process User
timeout timeout 2 perl -e use Socket;socket(S,PF_INET,SOCK_STREAM,getprotobyname("tcp"))... sshd inbridge-42\dsst
Registry Artifacts 0
No registry artifacts found for this incident
Analyst Verdict
MEDIUM
  • Monitor for similar activity
  • Verify remediation complete
Summary
1
Alerts
1
Hosts
3
Files
0
Network
Alert Categories
Execution
Timeline
01-15 15:59:06
Incident Created
#1726 - Perl script connecting to network
01-15 15:59:06
perl
Verdict: Unknown
01-15 15:59:06
sshd
Verdict: Unknown
01-15 15:59:06
timeout
Verdict: Unknown
01-15 15:54:59
Perl script connecting to network
medium - Detected