Inhalt nur in Originalsprache verfügbar
class="post-article">

Sality

Sality, 2003 ten beri aktif polimorfik PE dosya enfektörüdür. P2P botnet, AV öldürme, spam/DDoS/kripto madencilik. Kernel driver güvenlik bypass.

Bedrohungsprofil
Typ Other
ProgrammierspracheC++
C2-ProtokollP2P
Erstmals gesehen2003
Ziele Kuresel Windows
Zweck / Fähigkeiten
  • PE File Infector
Für diese Familie wurden noch keine C2-Server identifiziert.

Forschungsberichte (1)

Yüksek

Sality Virüs -- 241KB, Dosya Bulaşıcısı, P2P Botnet, AV Kaçınma | Yüksek

Sality 241KB dosya enfektörü. P2P botnet. AV kaçınma. Polimorfik PE enfeksiyonu.

Bericht lesen →