YARA rule 'backdoor_persistence': Backdoor persistence with malicious payloads (shell commands, SSH key injection, hidden root users) [malware]
- Category
- YARA Match
- Confidence
- 75% confidence
- Finding
YARA rule matched a known malware signature (reverse shell, backdoor, ransomware, C2 framework, or info stealer).
- Content
sh ing decision echo "🎯 Route: $ROUTE" echo "📊 Confidence: $CONFIDENCE" echo "📝 Reason: $REASON" echo "🔢 Complexity: $COMPLEXITY (words: $WORD_COUNT)" echo "" # Tool suggestion case "$ROUTE" in coding) TOOL="codex / claude-code / cursor" ;; research) TOOL="web_search / exa-plus / browser" ;; trading) TOOL="trading bot / lighter / variational" ;; system) TOOL="exec / crontab / openclaw CLI" ;; content) TOOL="writer / summarizer / translate" ;; general) TOOL="general LLM chat" ;; esac echo "🔧 Suggested tool: $TOOL"
