Back to Rule

Rule History

SID: 5000011 • Source: malsilo/win-malware

Versions (2)

Version DetailsCurrent

Rev: 1Dec 1, 2022, 12:00 PM

MalSilo MALWARE (sabsik) C&C Detected

alert tcp any any -> 79.137.192.57 48771 (msg:"MalSilo MALWARE (sabsik) C&C Detected"; flow:established,to_server; reference:url,malsilo.gitlab.io/feeds/dumps/master-feed.json; classtype:command-and-control; sid:5000011; rev:1; metadata: tag peexe32,tag pegui, created_at 2022_12_01, malware_family sabsik, updated_at 2022_12_01;)

Dec 1, 2022, 12:00 PM

Dec 1, 2022, 12:00 PM

Jun 12, 2025, 7:35 PM

Jun 12, 2025, 7:35 PM

malsilo-ip.rules