Short Name |
SHELLCODE:PREPENDENCODER-TCP |
---|---|
Severity |
High |
Recommended |
Yes |
Recommended Action |
Drop |
Category |
SHELLCODE |
Keywords |
Prepend Encoder Routine Detection (TCP) |
Release Date |
2013/08/19 |
Update Number |
2291 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects payloads being transferred over network that use the PrependEncoder routine. This may be an indication of someone trying to drop malicious file content on targeted systems to achieve remote code execution.