""ET TROJAN LuminosityLink - CnC Password Exfil""
SID: 2022709
Revision: 1
Class Type: trojan-activity
Metadata: created_at 2016_04_06, former_category MALWARE, updated_at 2022_03_24
Reference:
Protocol: tcp
Source Network: any
Source Port: any
Destination Network: any
Destination Port: any
Flow: established,to_server
Contents:
-
Value: "PASSWORDS=" Depth: 10
-
Value: "8_=_8"
Within:
PCRE:
Special Options: