SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  Tepfer.BFVY
Tepfer.BFVY is an infostealer that usually spreads via spam Emails with malicious attachments. Upon execution they mine the victim machine for vital inforamtion, they download and execute different trojan variants and execute them on the victim machine

            Network Activity
            It attempts to connect to the following remote servers:
            • dharmaking.net:80 (64.94.1xxxxxx)

            We observed the following DNS query/queries:
            • dharmaking.net


            Relevant Information