ET MOBILE_MALWARE Android/GPlayed (sub1 .tdsworker .ru in DNS Lookup)

SID: 2026566Rev: 45 views
History
Sourceet/open
CreatedNovember 1, 2018
UpdatedSeptember 16, 2020
Classificationtrojan-activity
alert dns $HOME_NET any -> any any (msg:"ET MOBILE_MALWARE Android/GPlayed (sub1 .tdsworker .ru in DNS Lookup)"; dns.query; content:"sub1.tdsworker.ru"; endswith; reference:url,blog.talosintelligence.com/2018/10/gplayerbanker.html; classtype:trojan-activity; sid:2026566; rev:4; metadata:affected_product Android, attack_target Mobile_Client, created_at 2018_11_01, deployment Perimeter, malware_family Android_GPlayed, confidence High, signature_severity Critical, tag Android, updated_at 2020_09_16;)

Metadata

affected productAndroid
attack targetMobile_Client
created at2018_11_01
deploymentPerimeter
malware familyAndroid_GPlayed
confidenceHigh
signature severityCritical
tagAndroid
updated at2020_09_16

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!