IRC: Botnet Download Command Traffic

This signature detects chat patterns associated with IRC BotNets. Computers infected with malware can use the Internet Relay Chat protocol to "phone home" for instructions by the Botnet controller. It may also be a false positive.

Short Name
CHAT:IRC:BOTNET:DOWNLOAD-CMD
Severity
Minor
Recommended
False
Recommended Action
None
Category
CHAT
Keywords
Botnet Command Download Traffic
Release Date
02/10/2010
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3324
False Positive
Unknown

Found a potential security threat?