ET MALWARE ShellBot.C retrieval

SID: 2018953Rev: 30 views
History
Sourceet/open
CreatedAugust 19, 2014
UpdatedAugust 19, 2020
Classificationtrojan-activity
alert http $EXTERNAL_NET any -> $HOME_NET any (msg:"ET MALWARE ShellBot.C retrieval"; flow:from_server,established; file_data; content:"my $processo"; content:"my @adms="; distance:0; content:"my @canais="; distance:0; content:"|23|gh|30|sts"; within:10; reference:md5,3e44252394078c8fd792da1583525d0c; reference:url,pastebin.com/0dAciksC; reference:url,pastebin.com/C0arvGxU; classtype:trojan-activity; sid:2018953; rev:3; metadata:created_at 2014_08_19, signature_severity Major, updated_at 2020_08_19;)

References

Metadata

created at2014_08_19
signature severityMajor
updated at2020_08_19

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!