""ET TROJAN ELF/Mirai.shiina v3 CnC Checkin""
SID: 2027848
Revision: 1
Class Type: trojan-activity
Metadata: affected_product Linux, created_at 2019_08_09, malware_family Mirai, tag DDoS, updated_at 2019_08_09
Reference:
Protocol: tcp
Source Network: any
Source Port: any
Destination Network: $EXTERNAL_NET
Destination Port: any
Flow: established,to_server
Contents:
- Value: "|01 03 03 07 04 02 00 06|" Depth: 8
Within:
PCRE:
Special Options:
- fast_pattern