ET MALWARE BumbleBee Loader CnC Server Response
Sourceet/open
CreatedOctober 16, 2024
UpdatedOctober 16, 2024
Classificationcommand-and-control
alert tcp $EXTERNAL_NET any -> $HOME_NET any (msg:"ET MALWARE BumbleBee Loader CnC Server Response"; flow:established,to_client; content:"|96|alcon|22 fe|"; depth:13; threshold:type limit, count 1, seconds 300, track by_dst; reference:md5,392419d9747a11165f669091eca260af; reference:url,x.com/naumovax/status/1846490569284948340; classtype:command-and-control; sid:2056727; rev:1; metadata:affected_product Windows_XP_Vista_7_8_10_Server_32_64_Bit, attack_target Client_Endpoint, tls_state plaintext, created_at 2024_10_16, deployment Perimeter, malware_family Bumblebee_Loader, confidence High, signature_severity Critical, updated_at 2024_10_16;)
References
| md5 | 392419d9747a11165f669091eca260af |
| url | x.com/naumovax/status/1846490569284948340 |
Metadata
affected productWindows_XP_Vista_7_8_10_Server_32_64_Bit
attack targetClient_Endpoint
tls stateplaintext
created at2024_10_16
deploymentPerimeter
malware familyBumblebee_Loader
confidenceHigh
signature severityCritical
updated at2024_10_16
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!