
Rule Info
Name
File Creation Related To RAT Clients
Author
Joseliyo Sanchez, @Joseliyo_Jstnk
Description
File .conf created related to VenomRAT, AsyncRAT and Lummac samples observed in the wild.
Reference
Date
2024-12-19 00:00:00
Modified
None
Id
2f3039c8-e8fe-43a9-b5cf-dcd424a2522d
Tags
attack.execution detection.emerging-threats
Type
Community Rule
Link to Public Repo