Back to Rule

Rule History

SID: 2019396 • Source: et/open

Versions (5)

Version DetailsCurrent

Rev: 6Oct 14, 2014, 12:00 PM

ET MALWARE TorrentLocker DNS Lookup

alert dns $HOME_NET any -> any any (msg:"ET MALWARE TorrentLocker DNS Lookup"; dns.query; content:"server4love.ru"; startswith; endswith; nocase; fast_pattern; reference:md5,8d2e901583b60631dc333d4b396e158b; classtype:trojan-activity; sid:2019396; rev:6; metadata:created_at 2014_10_14, confidence Medium, signature_severity Major, tag Description_Generated_By_Proofpoint_Nexus, updated_at 2024_05_16;)

Oct 14, 2014, 12:00 PM

May 16, 2024, 12:00 PM

Sep 21, 2024, 3:00 AM

Oct 16, 2025, 8:36 PM

rules/emerging-malware.rules