🐾 - 🏴‍☠️ Connection to an IP flagged at Cobalt Strike C2

SID: 3302378Rev: 31 views
Sourcepawpatrules
CreatedNovember 8, 2021
UpdatedNovember 30, 2021
Classificationtrojan-activity
alert ip any any -> 104.208.28.78 any (msg:"🐾 - 🏴‍☠️ Connection to an IP flagged at Cobalt Strike C2"; reference:url,https://www.shodan.io/search?query=product%3A%22Cobalt%20Strike%20Beacon%22; reference:url,https://malpedia.caad.fkie.fraunhofer.de/details/win.cobalt_strike; metadata:created_at 2021_11_08, updated_at 2021_11_30; sid:3302378; rev:3; classtype:trojan-activity;)

Metadata

created at2021_11_08
updated at2021_11_30

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!