Versions (2)
Version DetailsCurrent
Rev: 5 • Jun 5, 2014, 12:00 PMET MOBILE_MALWARE Android.Adware.Wapsx.A
alert http $HOME_NET any -> $EXTERNAL_NET any (msg:"ET MOBILE_MALWARE Android.Adware.Wapsx.A"; flow:established, to_server; content:"/fengmian/"; http.user_agent; content:"meinv6.4.0 qiu shou gou, zhi mai 503 wan ren min bi"; fast_pattern; startswith; http.header_names; content:!"|0d 0a|Referer|0d 0a|"; reference:md5,37e36531e6dbc3ad0954fd9bb4588fad; classtype:trojan-activity; sid:2018533; rev:5; metadata:affected_product Android, attack_target Client_Endpoint, created_at 2014_06_05, deployment Perimeter, signature_severity Critical, tag Android, updated_at 2024_03_03;)
Jun 5, 2014, 12:00 PM
Mar 3, 2024, 12:00 PM
Jun 5, 2014, 12:00 PM
May 31, 2024, 9:00 PM
rules/emerging-mobile_malware.rules