ET MALWARE ELF/BASHLITE vbot Variant CnC

SID: 2030496Rev: 10 views
History
Sourceet/open
CreatedJuly 10, 2020
UpdatedJuly 10, 2020
Classificationtrojan-activity
alert tcp $HOME_NET any -> $EXTERNAL_NET any (msg:"ET MALWARE ELF/BASHLITE vbot Variant CnC"; flow:established,to_server; content:"ver|3a|1.500000|3a|null|3a|"; fast_pattern; reference:md5,65cc35e68e3834b1955115737ff3c55e; classtype:trojan-activity; sid:2030496; rev:1; metadata:affected_product Linux, attack_target Client_Endpoint, created_at 2020_07_10, deployment Perimeter, malware_family ELF_BASHLITE, performance_impact Low, confidence High, signature_severity Major, tag Description_Generated_By_Proofpoint_Nexus, updated_at 2020_07_10;)

References

md5
65cc35e68e3834b1955115737ff3c55e

Metadata

affected productLinux
attack targetClient_Endpoint
created at2020_07_10
deploymentPerimeter
malware familyELF_BASHLITE
performance impactLow
confidenceHigh
signature severityMajor
tagDescription_Generated_By_Proofpoint_Nexus
updated at2020_07_10

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!