SHARE
TWEET

DDoSTF

benkow_ Jan 12th, 2016 (edited) 189 Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. rule DDosTf : DDoS
  2. {
  3.   meta:
  4.     author = "benkow_ - MalwareMustDie"
  5.     description = "ELF.DDosTf"
  6.   strings:
  7.     $st0 = "ddos.tf"
  8.     $st1 = {E8 AE BE E7 BD AE 54 43  50 5F 4B 45 45 50 49 4E 54 56 4C E9 94 99 E8 AF AF EF BC 9A 00} /*TCP_KEEPINTVL*/
  9.     $st2 = {E8 AE BE E7 BD AE 54 43  50 5F 4B 45 45 50 43 4E 54 E9 94 99 E8 AF AF EF BC 9A 00} /*TCP_KEEPCNT*/
  10.     $st3 = "Accept-Language: zh"
  11.     $st4 = "%d Kb/bps|%d%%"
  12.    
  13.   condition:
  14.     all of them
  15. }
RAW Paste Data
We use cookies for various purposes including analytics. By continuing to use Pastebin, you agree to our use of cookies as described in the Cookies Policy. OK, I Understand
 
Top