RULE(RULE ID:332512)

Rule General Information
Release Date: 2019-09-27
Rule Name: Encoding And Obfuscated Shellcode Detection
Severity:
CVE ID:
Rule Protection Details
Description: Shellcode is a piece of code that is executed to exploit a software vulnerability. Shellcode is a hexadecimal machine code, so named because it often allows attackers to obtain a shell. Shellcode is often written in machine language. After the register eip overflows, a Shellcode machine code that can be executed by the CPU can be inserted, allowing the computer to execute any instructions of the attacker.
Impact: Launches a shell so that the attacker can control the compromised computer.
Affected OS: Network Device, Solaris, FreeBSD, Windows, Mac OS, Other Unix, Linux
Reference:
Solutions
Search and kill the malware by using antivirus tools and repair the system vulnerabilities.