#alert http $HOME_NET any -> $EXTERNAL_NET $HTTP_PORTS (msg:"ET DELETED Suspicious User Agent (
ClickAdsByIE?)"; flow:established,to_server; content:"|0d 0a|User-Agent|3a|
ClickAdsByIE?"; reference:url,doc.emergingthreats.net/2009445; classtype:trojan-activity; sid:2009456; rev:6; metadata:created_at 2010_07_30, former_category HUNTING, updated_at 2021_06_23;)
Added 2022-05-19 19:05:55 UTC
#alert http $HOME_NET any -> $EXTERNAL_NET $HTTP_PORTS (msg:"ET DELETED Suspicious User Agent (
ClickAdsByIE?)"; flow:established,to_server; content:"|0d 0a|User-Agent|3a|
ClickAdsByIE?"; reference:url,doc.emergingthreats.net/2009445; classtype:trojan-activity; sid:2009456; rev:5; metadata:created_at 2010_07_30, former_category HUNTING, updated_at 2021_06_23;)
Added 2021-06-23 19:31:43 UTC
#alert http $HOME_NET any -> $EXTERNAL_NET $HTTP_PORTS (msg:"ET DELETED Suspicious User Agent (
ClickAdsByIE?)"; flow:established,to_server; content:"|0d 0a|User-Agent|3a|
ClickAdsByIE?"; reference:url,doc.emergingthreats.net/2009445; classtype:trojan-activity; sid:2009456; rev:5; metadata:created_at 2010_07_30, updated_at 2010_07_30;)
Added 2018-09-13 19:40:38 UTC
Added 2018-09-13 17:54:17 UTC
#alert http $HOME_NET any -> $EXTERNAL_NET $HTTP_PORTS (msg:"ET DELETED Suspicious User Agent (
ClickAdsByIE?)"; flow:established,to_server; content:"|0d 0a|User-Agent|3a|
ClickAdsByIE?"; reference:url,doc.emergingthreats.net/2009445; classtype:trojan-activity; sid:2009456; rev:5; metadata:created_at 2010_07_30, updated_at 2010_07_30;)
Added 2017-08-07 21:02:36 UTC
#alert tcp $HOME_NET any -> $EXTERNAL_NET $HTTP_PORTS (msg:"ET DELETED Suspicious User Agent (
ClickAdsByIE?)"; flow:established,to_server; content:"User-Agent|3a|
ClickAdsByIE?"; http_header; reference:url,doc.emergingthreats.net/2009445; classtype:trojan-activity; sid:2009456; rev:5;)
Added 2011-10-12 19:27:24 UTC
#alert tcp $HOME_NET any -> $EXTERNAL_NET $HTTP_PORTS (msg:"ET DELETED Suspicious User Agent (
ClickAdsByIE?)"; flow:established,to_server; content:"User-Agent|3a|
ClickAdsByIE?"; http_header; classtype:trojan-activity; reference:url,doc.emergingthreats.net/2009445; sid:2009456; rev:5;)
Added 2011-09-14 22:40:46 UTC
#alert tcp $HOME_NET any -> $EXTERNAL_NET $HTTP_PORTS (msg:"ET DELETED Suspicious User Agent (
ClickAdsByIE?)"; flow:established,to_server; content:"User-Agent|3a|
ClickAdsByIE?"; http_header; classtype:trojan-activity; reference:url,doc.emergingthreats.net/2009445; reference:url,www.emergingthreats.net/cgi-bin/cvsweb.cgi/sigs/USER_AGENTS/USER_AGENTS_Suspicious; sid:2009456; rev:5;)
Added 2011-07-07 22:32:44 UTC
#alert tcp $HOME_NET any -> $EXTERNAL_NET $HTTP_PORTS (msg:"ET DELETED Suspicious User Agent (
ClickAdsByIE?)"; flow:established,to_server; content:"User-Agent|3a|
ClickAdsByIE?"; http_header; classtype:trojan-activity; reference:url,doc.emergingthreats.net/2009445; reference:url,www.emergingthreats.net/cgi-bin/cvsweb.cgi/sigs/USER_AGENTS/USER_AGENTS_Suspicious; sid:2009456; rev:5;)
Added 2011-07-07 21:26:58 UTC
alert tcp $HOME_NET any -> $EXTERNAL_NET $HTTP_PORTS (msg:"ET USER_AGENTS Suspicious User Agent (
ClickAdsByIE?)"; flow:established,to_server; content:"User-Agent|3a|
ClickAdsByIE?"; http_header; classtype:trojan-activity; reference:url,doc.emergingthreats.net/2009445; reference:url,www.emergingthreats.net/cgi-bin/cvsweb.cgi/sigs/USER_AGENTS/USER_AGENTS_Suspicious; sid:2009456; rev:5;)
Added 2011-02-04 17:28:47 UTC
alert tcp $HOME_NET any -> $EXTERNAL_NET $HTTP_PORTS (msg:"ET USER_AGENTS Suspicious User Agent (
ClickAdsByIE?)"; flow:established,to_server; content:"|0d 0a|User-Agent\:
ClickAdsByIE?"; classtype:trojan-activity; reference:url,doc.emergingthreats.net/2009445; reference:url,www.emergingthreats.net/cgi-bin/cvsweb.cgi/sigs/USER_AGENTS/USER_AGENTS_Suspicious; sid:2009456; rev:3;)
Added 2009-10-19 09:15:44 UTC
alert tcp $HOME_NET any -> $EXTERNAL_NET $HTTP_PORTS (msg:"ET USER_AGENTS Suspicious User Agent (
ClickAdsByIE?)"; flow:established,to_server; content:"|0d 0a|User-Agent\:
ClickAdsByIE?"; classtype:trojan-activity; reference:url,doc.emergingthreats.net/2009445; reference:url,www.emergingthreats.net/cgi-bin/cvsweb.cgi/sigs/USER_AGENTS/USER_AGENTS_Suspicious; sid:2009456; rev:3;)
Added 2009-10-19 09:15:44 UTC
alert tcp $HOME_NET any -> $EXTERNAL_NET $HTTP_PORTS (msg:"ET MALWARE Suspicious User Agent (
ClickAdsByIE?)"; flow:established,to_server; content:"|0d 0a|User-Agent\:
ClickAdsByIE?"; classtype:trojan-activity; reference:url,doc.emergingthreats.net/2009445; reference:url,www.emergingthreats.net/cgi-bin/cvsweb.cgi/sigs/MALWARE/MALWARE_USER_Agents; sid:2009456; rev:1;)
Added 2009-06-28 20:15:35 UTC