description-logoDescription

This indicates that a system might be infected by Remcos Botnet.
Remcos is a malware that infects Windows machines. It can steal password credentials, log key strokes, steal files, take screenshots and record from webcams.

affected-products-logoAffected Products

Any unprotected Windows system is vulnerable.

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

If required, the signature's action can be set to "Block".
Please use Anti-Virus software to scan and clean the infected devices.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2024-01-23 26.720 Sig Added
2022-04-19 20.300 Sig Added
2021-04-13 18.056 Sig Added