Short Name |
TROJAN:BACKOFF-ACTIVITY |
---|---|
Severity |
High |
Recommended |
Yes |
Recommended Action |
Drop |
Category |
TROJAN |
Keywords |
BackOff Point-of-Sale Command and Control Activity PoS C&C |
Release Date |
2014/09/08 |
Update Number |
2416 |
Supported Platforms |
di-5.3+, idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects attempts by the BackOff Point-of-Sale Trojan to use its Command and Control (C&C) communication system to exfiltrate data to a malicious actor. The source IP address is infected and should be removed from the network for forensics and sanitation.