Backdoor.StealthFalcon

description-logoDescription

This indicates that a system on your network is infected by the Stealth Falcon malware.
Stealth Falcon is a PowerShell-based backdoor that provides access to remote attackers.

affected-products-logoAffected Products

Any unprotected Windows system is vulnerable.

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Monitor the traffic from that network for any suspicious activity.
Use Anti-Virus software to scan and clean the system.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2019-09-25 14.694 Default_action:pass:drop
2019-09-13 14.687