1. Symantec/
  2. Security Response/
  3. Attack Signatures/
  4. System Infected: Darkshell DDOS Bot Activity

System Infected: Darkshell DDOS Bot Activity

Severity: High

This attack could pose a serious security threat. You should take immediate action to stop any damage or prevent further damage from happening.

Description

This signature detects Darkshell DDOS bot activity on the infected machine

Additional Information

Darkshell is a bot that preforms DDos attacks on urls provided by its Command and Control server.

Affected

  • Various windows platforms

Response

Minimal Default Removal Includes:
Disable System Restore.
Update Defs.
Perform a Scan.
  • Twitter
  • Facebook
  • LinkedIn
  • Google+
  • YouTube