[Emerging-Sigs] More info on DreamSmasher CnC

Federico Foschini undicizeri at gmail.com
Wed Feb 28 23:14:51 HST 2018

Hi everyone,
we got a number of alerts related to the rules `DreamSmasher CnC
$something Request`.

Looking at the network traffic I can see very suspicious payloads so I
believe is not a false positive.

Anyway the only reference in the signature is a MD5 and I  can't find any
info on this Trojan.

Is there an analysis on this malware? Have you got any further infomation?
Federico Foschini.
