ET MALWARE BumbleBee Loader CnC Checkin

SID: 2056726Rev: 19 views
Sourceet/open
CreatedOctober 16, 2024
UpdatedOctober 16, 2024
Classificationcommand-and-control
alert tcp $HOME_NET any -> $EXTERNAL_NET any (msg:"ET MALWARE BumbleBee Loader CnC Checkin"; flow:established,to_server; content:"|96|alcon|22 fe|"; depth:13; threshold:type limit, count 1, seconds 300, track by_src; reference:md5,392419d9747a11165f669091eca260af; reference:url,x.com/naumovax/status/1846490569284948340; classtype:command-and-control; sid:2056726; rev:1; metadata:affected_product Windows_XP_Vista_7_8_10_Server_32_64_Bit, attack_target Client_Endpoint, tls_state plaintext, created_at 2024_10_16, deployment Perimeter, malware_family Bumblebee_Loader, confidence High, signature_severity Critical, updated_at 2024_10_16;)

References

Metadata

affected productWindows_XP_Vista_7_8_10_Server_32_64_Bit
attack targetClient_Endpoint
tls stateplaintext
created at2024_10_16
deploymentPerimeter
malware familyBumblebee_Loader
confidenceHigh
signature severityCritical
updated at2024_10_16

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!