ET ADWARE_PUP Win32.Perinet CnC Checkin
Sourceet/open
CreatedOctober 12, 2021
UpdatedOctober 12, 2021
Classificationpup-activity
alert http $HOME_NET any -> $EXTERNAL_NET any (msg:"ET ADWARE_PUP Win32.Perinet CnC Checkin"; flow:to_server,established; http.method; content:"POST"; http.uri; content:"/ceb.aspx"; endswith; http.user_agent; content:"Mozila"; fast_pattern; bsize:6; http.header_names; content:!"Referer"; reference:md5,c1c94bd5effc12455d7d0fe22e29feb5; reference:url,www.microsoft.com/en-us/wdsi/threats/malware-encyclopedia-description?Name=PUA:Win32/Perion; classtype:pup-activity; sid:2034175; rev:1; metadata:created_at 2021_10_12, confidence High, signature_severity Minor, tag Description_Generated_By_Proofpoint_Nexus, updated_at 2021_10_12;)
References
| md5 | c1c94bd5effc12455d7d0fe22e29feb5 |
| url | www.microsoft.com/en-us/wdsi/threats/malware-encyclopedia-description?Name=PUA:Win32/Perion |
Metadata
created at2021_10_12
confidenceHigh
signature severityMinor
tagDescription_Generated_By_Proofpoint_Nexus
updated at2021_10_12
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!