Snort Search


1-26397 - INDICATOR-COMPROMISE IP address check to myip.dnsomatic.com detected

Rule

1-41755 - INDICATOR-COMPROMISE d-link sharecenter dns-320 denial of service attempt

Rule

1-41756 - INDICATOR-COMPROMISE d-link sharecenter dns-320 denial of service attempt

Rule

1-41757 - INDICATOR-COMPROMISE d-link sharecenter dns-320 denial of service attempt

Rule

1-41758 - INDICATOR-COMPROMISE d-link sharecenter dns-320 denial of service attempt

Rule

1-20095 - INDICATOR-COMPROMISE IRC dns request on non-standard port

Rule

1-46848 - INDICATOR-COMPROMISE Possible Samba internal DNS forged response

Rule

Talos Rules 2021-02-23 - This release adds and modifies rules in several categories.

Advisory

Talos Rules 2021-02-23 - This release adds and modifies rules in several categories.

Advisory

Talos Rules 2021-02-23 - This release adds and modifies rules in several categories.

Advisory

Talos Rules 2021-02-23 - This release adds and modifies rules in several categories.

Advisory

Talos Rules 2021-02-23 - This release adds and modifies rules in several categories.

Advisory

Talos Rules 2021-02-23 - This release adds and modifies rules in several categories.

Advisory

Talos Rules 2021-02-23 - This release adds and modifies rules in several categories.

Advisory

Talos Rules 2021-02-23 - This release adds and modifies rules in several categories.

Advisory

Talos Rules 2021-02-23 - This release adds and modifies rules in several categories.

Advisory

1-33215 - INDICATOR-COMPROMISE DNS request for known malware domain icanhazip.com

Rule

Talos Rules 2021-02-23 - This release adds and modifies rules in several categories.

Advisory

Talos Rules 2021-03-30 - This release adds and modifies rules in several categories.

Advisory

Talos Rules 2018-01-02 - This release adds and modifies rules in several categories.

Advisory

Talos Rules 2018-01-02 - This release adds and modifies rules in several categories.

Advisory

Talos Rules 2018-01-02 - This release adds and modifies rules in several categories.

Advisory

1-33216 - INDICATOR-COMPROMISE DNS request for known malware domain tor2web.org

Rule

1-44037 - INDICATOR-COMPROMISE DNS request for known malware sinkhole domain iuqerfsodp9ifjaposdfjhgosurijfaewrwergwea.com - WannaCry

Rule

1-51712 - INDICATOR-COMPROMISE Win.Trojan.NanoCore DNS request for known malware domain bsbs.duckdns.org

Rule

Talos Rules 2017-07-25 - This release adds and modifies rules in several categories.

Advisory

Talos Rules 2017-07-25 - This release adds and modifies rules in several categories.

Advisory

1-34677 - BLACKLIST DNS request for known malware domain queryforworld.com - Win.Trojan.Poseidon

Rule

1-28952 - BLACKLIST DNS request to suspicious domain ns0.pollosm.me.uk - Win.Trojan.Bunitu.G

Rule

1-28953 - BLACKLIST DNS request to suspicious domain ns1.pollosm.me.uk - Win.Trojan.Bunitu.G

Rule