ET MALWARE STARSYPOUND Client Checkin

SID: 2016444Rev: 30 views
History
Sourceet/open
CreatedFebruary 20, 2013
UpdatedJuly 26, 2019
Classificationcommand-and-control
alert tcp $EXTERNAL_NET 443 -> $HOME_NET any (msg:"ET MALWARE STARSYPOUND Client Checkin"; flow:established,from_server; content:"*(SY)# "; depth:7; reference:md5,8442ae37b91f279a9f06de4c60b286a3; reference:url,www.mandiant.com/apt1; classtype:command-and-control; sid:2016444; rev:3; metadata:created_at 2013_02_20, signature_severity Major, updated_at 2019_07_26;)

References

md5
8442ae37b91f279a9f06de4c60b286a3
urlwww.mandiant.com/apt1

Metadata

created at2013_02_20
signature severityMajor
updated at2019_07_26

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!