🐾 - 🚨 Outgoing connection ↗ 🎛 C2 - UNC1878 - 🔒 Rançongiciel Conti - C2 IceID
Sourcepawpatrules
CreatedMay 14, 2021
UpdatedMay 14, 2021
Classificationtrojan-activity
alert ip any any -> 68.183.20.194 any (msg:"🐾 - 🚨 Outgoing connection ↗ 🎛 C2 - UNC1878 - 🔒 Rançongiciel Conti - C2 IceID"; reference:url,https://thedfirreport.com/2021/05/12/conti-ransomware/; reference:url,https://malpedia.caad.fkie.fraunhofer.de/details/win.conti; reference:url,https://malpedia.caad.fkie.fraunhofer.de/actor/unc1878; metadata:created_at 2021_05_14, updated_at 2021_05_14; sid:3317102; rev:1; classtype:trojan-activity;)
References
Metadata
created at2021_05_14
updated at2021_05_14
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!