MalwareBazaar Database

This page shows some basic information the YARA rule focusbot_ddos_botnet including corresponding malware samples.

Database Entry


YARA Rule:focusbot_ddos_botnet
Author:Nokia Deepfield ERT
Description:FocusBot DDoS botnet - plaintext HTTP C2 with UDP/TCP flood attacks
Firstseen:2026-03-14 12:31:19 UTC
Lastseen:2026-03-14 12:31:43 UTC
Sightings:11

Malware Samples


The table below shows all malware samples that matching this particular YARA rule (max 1000).

Firstseen (UTC)SHA256 hashTagsSignatureReporter