ET DELETED Suspicious Win32 User Agent

SID: 2012316Rev: 30 views
History
Sourceet/open
CreatedFebruary 18, 2011
UpdatedJuly 26, 2019
Classificationtrojan-activity
alert http $HOME_NET 1024: -> $EXTERNAL_NET $HTTP_PORTS (msg:"ET DELETED Suspicious Win32 User Agent"; flow:to_server,established; content:"User-Agent|3a| Win32"; http_header; classtype:trojan-activity; sid:2012316; rev:3; metadata:created_at 2011_02_18, signature_severity Unknown, updated_at 2019_07_26;)

Metadata

created at2011_02_18
signature severityUnknown
updated at2019_07_26

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!