Short Name |
HTTP:STC:DL:MUL-FILES-WITH-PDF |
---|---|
Severity |
Medium |
Recommended |
No |
Recommended Action |
Drop |
Category |
HTTP |
Keywords |
Multiple Files header followed by PDF header |
Release Date |
2015/06/09 |
Update Number |
2503 |
Supported Platforms |
idp-4.1+, isg-3.5.141421+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects Multiple Files header followed by PDF header. This is a technique commonly used by malicious activity to hide the malicious nature of the files being downloaded by a user. A successful attack allows the file creator to take control of the victim's system.