alert http $HOME_NET any -> $EXTERNAL_NET any (msg:"ET INFO DYNAMIC_DNS HTTP Request to a *.b0ne.com Domain"; flow:established,to_server; content:".b0ne.com|0D 0A|"; http_header; classtype:bad-unknown; sid:2014483; rev:3; metadata:created_at 2012_04_05, updated_at 2012_04_05;)

Added 2017-08-07 21:07:53 UTC


alert tcp $HOME_NET any -> $EXTERNAL_NET $HTTP_PORTS (msg:"ET CURRENT_EVENTS HTTP Request to a *.b0ne.com Dynamic DNS Domain"; flow:established,to_server; content:".b0ne.com|0D 0A|"; fast_pattern:only; http_header; classtype:bad-unknown; sid:2014483; rev:1;)

Added 2012-04-05 12:33:44 UTC


Topic revision: r1 - 2017-08-08 - TWikiGuest
 
This site is powered by the TWiki collaboration platform Powered by Perl This site is powered by the TWiki collaboration platformCopyright © Emerging Threats