ET INFO Suspicious Outbound SIG DNS Query
Query · suricata
content:"|00 00 18 00 01|"; fast_pattern; dns.query; pcre:"/^\d/";
content:"|00 00 18 00 01|"; fast_pattern; dns.query; pcre:"/^\d/";
Detection rules belong to the projects that publish them and remain under their own licenses. This site indexes and links to them; it claims no rights in them.