SHELLCODE: Base64 X86 NOOP Detection Over HTTP (2)

This signature detects payloads being transferred over network that have been using base64 x86 NOOP. This may be an indication of someone trying to evade anti-virus/IPS solutions and possibly drop malicious code.

Short Name
SHELLCODE:X86:BASE64-NOOP-80-2
Severity
Critical
Recommended
False
Recommended Action
None
Category
SHELLCODE
Keywords
(2) Base64 Detection HTTP NOOP Over X86
Release Date
02/16/2021
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3356
False Positive
Rarely

Found a potential security threat?