🐾 - 🚨 Outgoing connection ↗ 🎛 possible ♞ Emotet C2
Sourcepawpatrules
CreatedMarch 20, 2023
UpdatedMarch 20, 2023
Classificationtrojan-activity
alert ip any any -> 174.138.33.49 any (msg:"🐾 - 🚨 Outgoing connection ↗ 🎛 possible ♞ Emotet C2"; reference:url,reference: url,https://www.dragos.com/blog/industry-news/suspected-conti-ransomware-activity-in-the-auto-manufacturing-sector/; reference:url,https://malpedia.caad.fkie.fraunhofer.de/details/win.emotet; reference:url,https://bazaar.abuse.ch/sample/a43e0864905fe7afd6d8dbf26bd27d898a2effd386e81cfbc08cae9cf94ed968/; metadata:created_at 2023_03_20, updated_at 2023_03_20; sid:3309522; rev:7; classtype:trojan-activity;)
References
Metadata
created at2023_03_20
updated at2023_03_20
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!