RULE(RULE ID:716964)

Rule General Information
Release Date: 2024-06-25
Rule Name: Trojan Activity: Malware STRRAT C2 Response
Severity:
CVE ID:
Rule Protection Details
Description: STRRAT is a multi-functional Java-based remote access tool (RAT) that is known for its data stealing capabilities and fake ransomware-like behavior. Attackers distribute StrRAT malware through malicious email campaigns. This RAT can steal browser credentials, log keystrokes and take remote control of infected systems. This rule is used to detect the C2 request of STRRAT. This rule is used to detect the C2 command up-n-exec issued by the STRRAT server to the client.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.