CaseID-2412
August 15, 2017
PLATFORM:
Windows
OVERALL RISK RATING:
REPORTED INFECTION:
Threat Type: Others
Destructiveness: No
Encrypted:
In the wild: Yes
OVERVIEW
TRICKBOT - Malicious certificate - SSL
Detection Name: HTTPS_TRICKBOT_CERTIFICATE
Malware Family: TRICKBOT
Related Malware:
TECHNICAL DETAILS
NOTES:
Attack Phase: Command and Control Communication
Protocol: HTTPS
Risk type: MALWARE
Threat Type: Malicious Behavior
Confidence Level: High
Severity: High(Inbound)
Status: Enable
Event Class: Callback
Event Subclass: Bot
Behavior Indicator: Callback
APT-related: NO
APT Group: N/A
APT Campaign: N/A
CVE/MS Exploit Related: N/A
Notes: N/A