""ET TROJAN Sourtoff Download Simda Request""

SID: 2019312

Revision: 3

Class Type: trojan-activity

Metadata: created_at 2014_09_29, updated_at 2019_01_10

Reference:

  • md5

  • 5469af0daa10f8acbe552cd2f1f6a6bb

Protocol: tcp

Source Network: $HOME_NET

Source Port: ![23,25,80,137,139,445]

Destination Network: $EXTERNAL_NET

Destination Port: 20000:

Flow: established,to_server

Contents:

  • Value: "|0a 10|" Depth: 2

Within:

PCRE:

Special Options:

source