ET MALWARE Xenorat Default C2 Server Response Inbound
Query · suricata
flow:established,to_client; dsize:21; content:"|11 00 00 00 00 dc db 8d 8b 56 4b f3 37 ae 1a e8 c3 b7 2e 8c 8c|"; target:dest_ip;
flow:established,to_client; dsize:21; content:"|11 00 00 00 00 dc db 8d 8b 56 4b f3 37 ae 1a e8 c3 b7 2e 8c 8c|"; target:dest_ip;
Detection rules belong to the projects that publish them and remain under their own licenses. This site indexes and links to them; it claims no rights in them.