ET MOBILE_MALWARE Android/Bankbot.HH!tr DNS Lookup 12

SID: 2024746Rev: 50 views
History
Sourceet/open
CreatedSeptember 20, 2017
UpdatedSeptember 17, 2020
Classificationtrojan-activity
alert dns $HOME_NET any -> any any (msg:"ET MOBILE_MALWARE Android/Bankbot.HH!tr DNS Lookup 12"; dns.query; content:"kvp41.life"; depth:10; fast_pattern; endswith; nocase; reference:url,blog.fortinet.com/2017/09/19/a-look-into-the-new-strain-of-bankbot; classtype:trojan-activity; sid:2024746; rev:5; metadata:affected_product Android, attack_target Mobile_Client, created_at 2017_09_20, deployment Perimeter, malware_family Android_BankBot, confidence Medium, signature_severity Major, tag Android, updated_at 2020_09_17;)

Metadata

affected productAndroid
attack targetMobile_Client
created at2017_09_20
deploymentPerimeter
malware familyAndroid_BankBot
confidenceMedium
signature severityMajor
tagAndroid
updated at2020_09_17

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!