Rule Info
Name
Backdoored Thor Scanner Execution
Author
Nasreddine Bencherchali (Nextron Systems)
Description
Detects the execution of a known malicious version of the thor scanner binary
Reference
Internal Research
Date
2023-10-29 00:00:00
Modified
None
Id
dfe77d55-6e39-44d4-a4e0-b4865081d310
Tags
attack.defense-evasion attack.t1134.004
Type
Nextron Sigma feed only (private)