Antak.Web.Shell

description-logoDescription

This indicates an attempt to use Antak web shell.
Antak is written in ASP.NET and it is a tool included in Nishang, which is often used in penetration testing. Antak can execute PowerShell commands.

affected-products-logoAffected Products

Any compromised server with PowerShell

Impact logoImpact

System Compromise: Remote attacker can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

If required, the signature's action can be set to "Block".

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2022-11-07 22.433 Default_action:pass:drop
2022-09-22 22.399