Andromeda

description-logo Description

Andromeda is a botnet that is used to distribute malware with different capabilities, depending on the command given by its command-and-control (C&C) server. The toolkit for this botnet can be obtained on the Internet underground and is constantly being updated.

Symptoms

System Compromise: Remote attackers can gain control of vulnerable systems.

recommended-action-logoInstructions

If required, the signature's action can be set to "Block". Use Anti-Virus software to scan and clean the system.

Telemetry logoTelemetry