ET MALWARE Win32/RustMiner Suspicious HTTP Accept Header Observed
Query · suricata
flow:established,to_server; http.header; content:"Accept|3a 20 2a 2f 2a 2c 20 3f 3f 3f 40 2c 20 3f 3f 3f 3f 3f 3f 3f 3f 3f 3f 3f 3f 3f 3f 0d 0a|"; fast_pattern;
flow:established,to_server; http.header; content:"Accept|3a 20 2a 2f 2a 2c 20 3f 3f 3f 40 2c 20 3f 3f 3f 3f 3f 3f 3f 3f 3f 3f 3f 3f 3f 3f 0d 0a|"; fast_pattern;
Detection rules belong to the projects that publish them and remain under their own licenses. This site indexes and links to them; it claims no rights in them.