Triton.Malware.Backdoor

description-logoDescription

This indicates that a system might be infected by Triton malware.
Triton is a malware that targets Triconex Safety Instrumented System controllers.

affected-products-logoAffected Products

Any unprotected Triconex system is vulnerable.

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Monitor the traffic from that network for any suspicious activity.
Use Anti-Virus software to scan and clean the system.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2020-06-23 15.870 Sig Added
2020-06-15 15.864 Default_action:pass:drop
2020-06-03 15.856