AT related malicious URL (hcnhrqkgu74bxhlo7xvch3arblulplw7g72kkdj3ddp6vkqr4rsq .ar .randao .net/OJp4wUan-Budbv3qI-wRCui3rt839KUNOxjf6qoR5GU)

SID: 6001056Rev: 20 views
Sourcejulioliraup/antiphishing
CreatedMay 22, 2026
UpdatedMay 22, 2026
Classificationsocial-engineering
alert http $HOME_NET any -> any any (msg:"AT related malicious URL (hcnhrqkgu74bxhlo7xvch3arblulplw7g72kkdj3ddp6vkqr4rsq .ar .randao .net/OJp4wUan-Budbv3qI-wRCui3rt839KUNOxjf6qoR5GU)"; flow:established,to_server; http.uri; content:"/OJp4wUan-Budbv3qI-wRCui3rt839KUNOxjf6qoR5GU"; startswith; fast_pattern; http.host; content:"hcnhrqkgu74bxhlo7xvch3arblulplw7g72kkdj3ddp6vkqr4rsq.ar.randao.net"; endswith; reference:url,openphish.com; reference:url,github.com/julioliraup/Antiphishing; reference:url,julioliraup.github.io/ET/signature.html?sid=6001056; classtype:social-engineering; sid:6001056; rev:2; metadata:signature_severity Major, created_et 2026_05_11, updated_et 2025_05_11;)

Metadata

signature severityMajor
created et2026_05_11
updated et2025_05_11

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!