RULE(RULE ID:324363)

Rule General Information
Release Date: 2020-01-13
Rule Name: Satan/5ss5c Ransomware CnC Activity Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: This computer is possibly compromised by advanced malware since CnC activities are detected. Therefore, the computer can have high risks. For example, malware can steal sensitive data from the computer, and malware can use the computer to attack other internal computers.
Impact: information disclosure
Affected OS: Windows
Reference: http://www.cnnvd.org.cn/web/xxk/yjxwById.tag?id=11
https://www.enigmasoftware.com/5ss5cransomware-removal/
Solutions
Scan the computer with antivirus software. Examine forensic computer logs. If this computer is found to be infected by malware, take prompte mitigation actions. For example, re-image the computer.