""ET DOS Possible Sentinal LM Application attack in progress Outbound (Response)""

SID: 2021170

Revision: 1

Class Type: attempted-dos

Metadata: created_at 2015_05_29, updated_at 2015_05_29

Reference:

Protocol: udp

Source Network: $HOME_NET

Source Port: 5093

Destination Network: $EXTERNAL_NET

Destination Port: any

Flow:

Contents:

  • Value: "|7a 00 00 00 00 00 00 00 00 00 00 00|" Depth: 12

Within:

PCRE:

Special Options:

source