DarkGate.Botnet

description-logoDescription

This indicates that a system might be infected by DarkGate Botnet.
DarkGate is a Windows malware that can steal password credentials, execute arbitrary commands, and download other malware. All botnet signatures from FortiOS 5.6 onwards are under IPS, and have their default action set to "Block".

affected-products-logoAffected Products

Any unprotected Windows system is vulnerable.

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

If required, the signature's action can be set to "Block".
Please use Anti-Virus software to scan and clean the infected devices.

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Status Detail
2024-07-22 28.830
Modified
Sig Added
2024-05-23 27.792
Modified
Sig Added
2024-05-14 27.787
Modified
Sig Added
2024-05-14 27.785
Modified
Sig Added
2023-12-05 26.689
Modified
Sig Added
2023-10-31 25.668
New