HTTP: Suspicious Malicious File Download Attempt

This signature detects attempts of possible malicious file download. This kind of behavior is mostly observed when someone is trying to scan and send malicious traffic against a network security device using various traffic generators.

Short Name
HTTP:STC:DL:SUSPICIOUS-FILE
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
Attempt Download File Malicious Suspicious
Release Date
04/04/2013
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3324
False Positive
Unknown

Found a potential security threat?