ET MALWARE ETag HTTP Header Observed at JPCERT Sinkhole
Query · suricata
flow:established,to_client; http.header; content:"ETag|3a 20 22|9-525c24c725e00|22|";
flow:established,to_client; http.header; content:"ETag|3a 20 22|9-525c24c725e00|22|";
Detection rules belong to the projects that publish them and remain under their own licenses. This site indexes and links to them; it claims no rights in them.