et-open
external-ip-check
ET POLICY External IP Lookup (api .ipstack .com)
sid 2029694
format suricata
et-open
policy-violation
ET POLICY External IP Lookup (moanmyip .com)
sid 2030126
format suricata
et-open
policy-violation
ET POLICY External IP Lookup (ipchicken .com)
sid 2030137
format suricata
et-open
external-ip-check
ET POLICY External IP Lookup (www. netikus .net)
sid 2030187
format suricata
et-open
external-ip-check
ET POLICY External IP Lookup SSL/TLS Certificate (ifconfig .me)
sid 2030666
format suricata
et-open
external-ip-check
ET POLICY Known External IP Lookup Service Domain in SNI
sid 2031616
format suricata
et-open
bad-unknown
ET INFO Observed External IP Lookup Domain (api .2ip .ua in TLS SNI)
sid 2033214
format suricata
et-open
policy-violation
ET POLICY External IP Lookup via 3322 .org
sid 2033630
format suricata
et-open
bad-unknown
ET INFO External IP Lookup Domain DNS Lookup (my-ip .io)
sid 2034196
format suricata
et-open
external-ip-check
ET INFO External IP Lookup Domain DNS Lookup (ip .dnsexit .com)
sid 2034898
format suricata
et-open
misc-activity
ET INFO External IP Lookup HTTP Request (ip .dnsexit .com)
sid 2034899
format suricata
et-open
misc-activity
ET INFO Observed External IP Lookup Domain (geoiplookup .io in TLS SNI)
sid 2035114
format suricata
et-open
external-ip-check
ET MALWARE TA402/Molerats External IP Lookup Activity
sid 2035121
format suricata
et-open
external-ip-check
ET INFO Observed External IP Lookup Domain (icanhazip .com in TLS SNI)
sid 2036304
format suricata
et-open
bad-unknown
ET INFO External IP Lookup Domain Domain in DNS Lookup (ipbase .com)
sid 2036560
format suricata
et-open
bad-unknown
ET INFO Observed External IP Lookup Domain (ipbase .com in TLS SNI)
sid 2036561
format suricata
et-open
bad-unknown
ET INFO External IP Lookup Domain in DNS Lookup (ip .bablosoft .com)
sid 2036685
format suricata
et-open
external-ip-check
ET INFO External IP Lookup Domain (freegeiop .net in DNS lookup)
sid 2036860
format suricata
et-open
bad-unknown
ET INFO External IP Lookup Domain in DNS Lookup (ipwho .is)
sid 2037042
format suricata
et-open
external-ip-check
ET INFO External IP Lookup Domain (ip-api .io) in DNS Lookup
sid 2039045
format suricata
et-open
external-ip-check
ET POLICY External IP Lookup (ip .anysrc .net)
sid 2039563
format suricata
sid 2039772
format suricata
et-open
external-ip-check
ET INFO Observed External IP Lookup Domain in TLS SNI (api .myip .com)
sid 2042969
format suricata
et-open
external-ip-check
ET INFO External IP Lookup Domain in DNS Query (checkip .dyndns .org)
sid 2043238
format suricata
et-open
external-ip-check
ET INFO Observed External IP Lookup Domain (ip .cn in TLS SNI)
sid 2047080
format suricata
et-open
external-ip-check
ET INFO Observed External IP Lookup Domain (ip .me in TLS SNI)
sid 2047082
format suricata
et-open
external-ip-check
ET INFO Observed External IP Lookup Domain (whois .pconline .com .cn in TLS SNI)
sid 2047622
format suricata
et-open
misc-activity
ET INFO External IP Lookup Domain (ipify .org) in DNS Lookup
sid 2047702
format suricata
et-open
external-ip-check
ET INFO External IP Lookup Domain (iplogger .com in TLS SNI)
sid 2047718
format suricata
et-open
external-ip-check
ET INFO External IP Lookup Domain (iplogger .com in DNS lookup)
sid 2047719
format suricata
sid 2048377
format suricata
sid 2048378
format suricata
et-open
misc-activity
ET INFO Observed External IP Lookup Domain (ufile .io in TLS SNI)
sid 2049262
format suricata
sid 2050281
format suricata
sid 2050282
format suricata
et-open
misc-activity
ET INFO External IP Lookup Service Domain (reallyfreegeoip .org) in TLS SNI
sid 2051431
format suricata
et-open
external-ip-check
sid 2054135
format suricata
et-open
external-ip-check
sid 2054136
format suricata
et-open
external-ip-check
sid 2054137
format suricata
et-open
external-ip-check
sid 2054138
format suricata
et-open
external-ip-check
sid 2054139
format suricata
et-open
external-ip-check
sid 2054140
format suricata
et-open
external-ip-check
sid 2054141
format suricata
et-open
external-ip-check
sid 2054142
format suricata
et-open
external-ip-check
sid 2054143
format suricata
et-open
external-ip-check
sid 2054144
format suricata
et-open
external-ip-check
sid 2054145
format suricata
et-open
external-ip-check
sid 2054146
format suricata
et-open
external-ip-check
sid 2054147
format suricata
et-open
external-ip-check
sid 2054148
format suricata