ET MALWARE CloudAtlas APT Related Domain in DNS Lookup (network-list .com)

SID: 2049731Rev: 254 views
History
Sourceet/open
CreatedDecember 19, 2023
UpdatedMarch 18, 2024
Classificationdomain-c2
alert dns $HOME_NET any -> any any (msg:"ET MALWARE CloudAtlas APT Related Domain in DNS Lookup (network-list .com)"; dns.query; bsize:16; content:"network-list.com"; nocase; reference:md5,7bdb049cb0cc3623e4fa1d8e2574f1ce; reference:md5,2e950fe4bd76088f89433a6f2146cb67; reference:url,www.facct.ru/blog/cloud-atlas; classtype:domain-c2; sid:2049731; rev:2; metadata:created_at 2023_12_19, deployment Perimeter, deprecation_reason Age, confidence Medium, signature_severity Major, tag Description_Generated_By_Proofpoint_Nexus, updated_at 2024_03_18, reviewed_at 2024_03_18; target:src_ip;)

References

md5
7bdb049cb0cc3623e4fa1d8e2574f1ce
md5
2e950fe4bd76088f89433a6f2146cb67
urlwww.facct.ru/blog/cloud-atlas

Metadata

created at2023_12_19
deploymentPerimeter
deprecation reasonAge
confidenceMedium
signature severityMajor
tagDescription_Generated_By_Proofpoint_Nexus
updated at2024_03_18
reviewed at2024_03_18

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!