DarkShell
- First seen
- 2011-01-01 00:00:00
- Malware type
- botnet, ddos
- Family
- Malware family
- Profile updated
- 2026-07-07 14:27:50
Targeted industries: manufacturing
Context
DarkShell is a DDoS bot seemingly of Chinese origin, discovered in 2011. During 2011, DarkShell was reported to target the industrial food processing industry.
Detection coverage
- 1 YARA rules
Detection rules
- MALPEDIA_Win_Darkshell_Auto (yara-rule)
Reports & references
- botconf.eu — Ok P13 Liu Ya Automatically Classify Unknown Bots By The Register Messages (report)
- malpedia.caad.fkie.fraunhofer.de — Win.Darkshell (report)
- McAfee — Darkshell Ddos Botnet Evolves With Variants (report)