Could you tell me if Languardian can spot the signiature or behaviour related with the caphaw virus?

  • 1
  • Question
  • Updated 6 years ago
  • Answered
Photo of Mike


  • 0 Posts
  • 0 Reply Likes

Posted 6 years ago

  • 1
Photo of Aisling Brennan

Aisling Brennan, Official Rep

  • 393 Posts
  • 8 Reply Likes
Yes, the LANGuardian IDS ruleset includes some signatures that reports on Caphaw so you can keep a close eye on this, such as
'ET TROJAN W32/Caphaw CnC Configuration File Request'

One of the key security reports on LANGuardian is "Security :: by Signature". Use this report if you want to find out what systems are affected by Caphaw.

If you require any help enabling these rules just let us know.