ET MALWARE Mirai Variant Domain (bigboatreps .pw in DNS Lookup)

SID: 2025078Rev: 50 views
History
Sourceet/open
CreatedNovember 28, 2017
UpdatedSeptember 15, 2020
Classificationtrojan-activity
alert dns $HOME_NET any -> any any (msg:"ET MALWARE Mirai Variant Domain (bigboatreps .pw in DNS Lookup)"; dns.query; content:"bigboatreps.pw"; nocase; endswith; reference:url,blog.netlab.360.com/early-warning-a-new-mirai-variant-is-spreading-quickly-on-port-23-and-2323-en/; classtype:trojan-activity; sid:2025078; rev:5; metadata:affected_product Linux, attack_target IoT, created_at 2017_11_28, deployment Perimeter, malware_family Mirai, performance_impact Low, confidence Medium, signature_severity Major, tag Description_Generated_By_Proofpoint_Nexus, updated_at 2020_09_15;)

Metadata

affected productLinux
attack targetIoT
created at2017_11_28
deploymentPerimeter
malware familyMirai
performance impactLow
confidenceMedium
signature severityMajor
tagDescription_Generated_By_Proofpoint_Nexus
updated at2020_09_15

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!