MALWARE-TOOLS --
MALWARE-TOOLS Win.Malware.ReconShark variant payload download
This rule looks for bytes known to be specific to a Win.Malware.ReconShark variant payload.
This rule fires on attempts to download a Win.Malware.ReconShark variant payload.
Attacks/Scans seen in the wild
No known false positives
Cisco Talos Intelligence Group
MITRE::ATT&CK Framework::Enterprise::Execution::User Execution::Malicious File
None
No information provided
None