""ET TROJAN Playtech Downloader Online Gaming Checkin""

SID: 2008365

Revision: 8

Class Type: trojan-activity

Metadata: created_at 2010_07_30, updated_at 2012_07_13

Reference:

  • md5

  • 00740d7d15862efb30629ab1fd7b8242

Protocol: tcp

Source Network: $HOME_NET

Source Port: any

Destination Network: $EXTERNAL_NET

Destination Port: $HTTP_PORTS

Flow: to_server,established

Contents:

  • Value: "/client_update_urls.php"

  • Value: "User-Agent|3a| Playtech "

Within:

PCRE:

Special Options:

  • http_uri

  • http_header

source