Rule Category

MALWARE-OTHER --

Alert Message

MALWARE-OTHER generic IRC botnet connection

Rule Explanation

This event is generated when activity relating to malware is detected. Impact: Serious. Possible existance of malware on the target host. Details: This activity is indicative of malware activity on a host. In this case the MALWARE-OTHER generic IRC botnet connection was detected. Ease of Attack: Simple. This may be an indication of a malware infestation.

What To Look For

Known Usage

No public information

False Positives

No known false positives

Contributors

Cisco Talos