""ET TROJAN Backdoor.Win32.Svlk Client Checkin""

SID: 2013891

Revision: 1

Class Type: trojan-activity

Metadata: created_at 2011_11_09, updated_at 2011_11_09

Reference:

  • md5

  • c929e8c75901c7e50685df0445a38bd0

Protocol: tcp

Source Network: $HOME_NET

Source Port: any

Destination Network: $EXTERNAL_NET

Destination Port: any

Flow: from_client,established

Contents:

  • Value: "|38 0d ff 0a d7 ee 9d d7 ec 59 13 56|" Depth: 12

Within:

PCRE:

Special Options:

source