Lucifer.Botnet
Description
This indicates that a system might be infected by Lucifer Botnet.
Lucifer is an infostealer malware that steals password credentials and files. It can also run crypto miners on the victim's machine.
All botnet signatures from FortiOS 5.6 onwards are under IPS, and have their default action set to "Block".
Outbreak Alert
FortiGuard Labs has observed various router vulnerabilities being exploited in the wild to distribute malware such as MooBot Malware, Lucifer Malware, BotenaGo Botnet, Zerobot Malware, Enemybot Malware.
Affected Products
Any unprotected Windows system is vulnerable.
Impact
System Compromise: Remote attackers can gain control of vulnerable systems.
Recommended Actions
If required, the signature's action can be set to "Block".
Please use Anti-Virus software to scan and clean the infected devices.
Coverage
| IPS (Regular DB) | |
| IPS (Extended DB) |
Version Updates
| Date | Version | Status | Detail |
|---|---|---|---|
| 2022-09-26 | 22.401 |
New
|