ET ADWARE_PUP Win32/Toolbar.Conduit.AG Checkin
Sourceet/open
CreatedMay 14, 2015
UpdatedAugust 31, 2020
Classificationpup-activity
alert http $HOME_NET any -> $EXTERNAL_NET any (msg:"ET ADWARE_PUP Win32/Toolbar.Conduit.AG Checkin"; flow:to_server,established; urilen:1; http.method; content:"POST"; http.user_agent; content:"NSIS_Inetc (Mozilla)"; bsize:20; http.request_body; content:"postInstallReport"; fast_pattern; content:"machineId|22 3a 22|"; reference:md5,8fc00c6696268ae42411a5ebf9d2576f; classtype:pup-activity; sid:2021094; rev:5; metadata:created_at 2015_05_14, signature_severity Minor, updated_at 2020_08_31;)
References
| md5 | 8fc00c6696268ae42411a5ebf9d2576f |
Metadata
created at2015_05_14
signature severityMinor
updated at2020_08_31
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!