ET EXPLOIT_KIT DRIVEBY Incognito Payload Requested /getfile.php by Java Client

SID: 2014924Rev: 20 views
Sourceet/open
CreatedJune 20, 2012
UpdatedApril 21, 2020
Classificationexploit-kit
alert http $HOME_NET any -> $EXTERNAL_NET any (msg:"ET EXPLOIT_KIT DRIVEBY Incognito Payload Requested /getfile.php by Java Client"; flow:established,to_server; http.uri; content:"/getfile.php?"; http.user_agent; content:"Java/1"; classtype:exploit-kit; sid:2014924; rev:2; metadata:affected_product Any, attack_target Client_Endpoint, created_at 2012_06_20, deployment Perimeter, signature_severity Major, tag DriveBy, updated_at 2020_04_21;)

Metadata

affected productAny
attack targetClient_Endpoint
created at2012_06_20
deploymentPerimeter
signature severityMajor
tagDriveBy
updated at2020_04_21

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!