ET MALWARE Win32/Hilgild!gen.A CnC Communication
Sourceet/open
CreatedDecember 31, 2011
UpdatedJuly 26, 2019
Classificationcommand-and-control
alert tcp $HOME_NET any -> $EXTERNAL_NET $HTTP_PORTS (msg:"ET MALWARE Win32/Hilgild!gen.A CnC Communication"; flow:established,to_server; content:"Y|00|M|00|S|00|G|00 2e 00 2e 00 2e 00 2e 00|"; depth:16; content:"|f6 f6 f6 f6 f6 f6 f6 f6 f6|"; dsize:1024; reference:md5,d8edad03f5524369e60c69a7483f8365; classtype:command-and-control; sid:2014055; rev:1; metadata:created_at 2011_12_31, malware_family Win32_Hilgild_gen_A, confidence Medium, signature_severity Major, updated_at 2019_07_26;)
References
| md5 | d8edad03f5524369e60c69a7483f8365 |
Metadata
created at2011_12_31
malware familyWin32_Hilgild_gen_A
confidenceMedium
signature severityMajor
updated at2019_07_26
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!