alert udp $HOME_NET any -> any 53 (msg:"ET TROJAN TeslaCrypt?/AlphaCrypt Variant .onion Payment Domain (o7zeip6us33igmgw)"; content:"|01 00 00 01 00 00 00 00 00 00|"; depth:10; offset:2; content:"|10|o7zeip6us33igmgw"; fast_pattern; distance:0; nocase; classtype:trojan-activity; sid:2022315; rev:1; metadata:created_at 2015_12_29, updated_at 2015_12_29;)

Added 2019-03-26 18:09:16 UTC


alert udp $HOME_NET any -> any 53 (msg:"ET TROJAN TeslaCrypt?/AlphaCrypt Variant .onion Payment Domain (o7zeip6us33igmgw)"; content:"|01 00 00 01 00 00 00 00 00 00|"; depth:10; offset:2; content:"|10|o7zeip6us33igmgw"; fast_pattern; distance:0; nocase; classtype:trojan-activity; sid:2022315; rev:1; metadata:created_at 2016_12_29, updated_at 2016_12_29;)

Added 2018-09-13 19:52:07 UTC


Added 2018-09-13 18:00:38 UTC


alert udp $HOME_NET any -> any 53 (msg:"ET TROJAN TeslaCrypt?/AlphaCrypt Variant .onion Payment Domain (o7zeip6us33igmgw)"; content:"|01 00 00 01 00 00 00 00 00 00|"; depth:10; offset:2; content:"|10|o7zeip6us33igmgw"; fast_pattern; distance:0; nocase; classtype:trojan-activity; sid:2022315; rev:1; metadata:created_at 2016_12_29, updated_at 2016_12_29;)

Added 2017-08-07 21:17:11 UTC


alert udp $HOME_NET any -> any 53 (msg:"ET TROJAN TeslaCrypt?/AlphaCrypt Variant .onion Payment Domain (o7zeip6us33igmgw)"; content:"|01 00 00 01 00 00 00 00 00 00|"; depth:10; offset:2; content:"|10|o7zeip6us33igmgw"; fast_pattern; distance:0; nocase; classtype:trojan-activity; sid:2022315; rev:1;)

Added 2015-12-29 15:37:54 UTC


Topic revision: r1 - 2019-03-26 - TWikiGuest
 
This site is powered by the TWiki collaboration platform Powered by Perl This site is powered by the TWiki collaboration platformCopyright © Emerging Threats