MALWARE-OTHER --
MALWARE-OTHER Win.Trojan.Masslogger variant D binary download attempt
This rule detects outgoing commands for Masslogger trojan operations, specifically, the Windows CHM downloads and executables.
This rule was written to detect Masslogger trojan C2 activity.
No public information
No known false positives
Cisco Talos Intelligence Group By Vanja Svajcer.
No rule groups
None
No information provided
None
Tactic: Command and Control
Technique: Commonly Used Port
For reference, see the MITRE ATT&CK vulnerability types here: https://attack.mitre.org