zeek-njrat-detector
This detector uses two types of detection:
- A Spicy analyzer to detect njRAT C2.
- The intelligence framework to detect IOCs.
More information on how this package was created can be found at:
https://drkeithjones.com/index.php/2023/04/20/detecting-njrat-bladabindi-malware-with-zeek-zeek-roulette-1/