Versions (4)
Version DetailsCurrent
Rev: 4 • Jun 22, 2015, 12:00 PMET MALWARE Win32/Ascrirac .onion proxy Domain (5sse6j4kdaeh3yus)
alert dns $HOME_NET any -> any any (msg:"ET MALWARE Win32/Ascrirac .onion proxy Domain (5sse6j4kdaeh3yus)"; dns.query; content:"5sse6j4kdaeh3yus"; depth:16; fast_pattern; nocase; classtype:trojan-activity; sid:2021317; rev:4; metadata:created_at 2015_06_22, malware_family Win32_Ascrirac, signature_severity Major, tag Description_Generated_By_Proofpoint_Nexus, updated_at 2020_09_01;)
Jun 22, 2015, 12:00 PM
Sep 1, 2020, 12:00 PM
Jun 22, 2015, 12:00 PM
Oct 16, 2025, 8:36 PM
rules/emerging-malware.rules