시그니처 리스트, Signature List
번호날짜ID시그니처 (Total Ruleset: 27,111개)
27,0612018/11/30 2026670  ET TROJAN L0rdix Stealer CnC Sending Screenshot; [1
27,0602018/11/30 2026672  ET TROJAN DNSpionage Commands Embedded in Webpage Inbound; [1
27,0592018/11/29 2026667  ET CURRENT_EVENTS Observed Malicious SSL Cert (StrongPity Domain);  
27,0582018/11/29 2026659  ET CURRENT_EVENTS Observed Malicious SSL Cert (BrushaLoader Domain);  
27,0572018/11/29 2026666  ET CURRENT_EVENTS Observed Malicious SSL Cert (StrongPity Domain);  
27,0562018/11/29 2026669  ET CURRENT_EVENTS Observed Malicious SSL Cert (StrongPity Domain);  
27,0552018/11/29 2026668  ET CURRENT_EVENTS Observed Malicious SSL Cert (StrongPity Domain);  
27,0542018/11/29 2026658  ET INFO Observed SSL Cert for Free Hosting Domain (*.000webhostapp .com);  
27,0532018/11/29 2026657  ET INFO Observed Free Hosting Domain (*.000webhostapp .com in DNS Lookup);  
27,0522018/11/28 2026655  ET CURRENT_EVENTS Observed Malicious SSL Cert (StrongPity Domain);  
27,0512018/11/28 2026656  ET CURRENT_EVENTS Observed Malicious SSL Cert (StrongPity Domain);  
27,0502018/11/28 2026649  ET INFO Certificate with Unknown Content; [1
27,0492018/11/28 2026650  ET CURRENT_EVENTS Generic Xbalti Phishing Landing 2018-11-26;  
27,0482018/11/28 2026654  ET CURRENT_EVENTS Observed Malicious SSL Cert (StrongPity Domain);  
27,0472018/11/28 2026651  ET CURRENT_EVENTS Observed Malicious SSL Cert (StrongPity Domain);  
27,0462018/11/28 2026652  ET CURRENT_EVENTS Observed Malicious SSL Cert (StrongPity Domain);  
27,0452018/11/28 2026653  ET CURRENT_EVENTS Observed Malicious SSL Cert (StrongPity Domain);  
27,0442018/11/21 2026633  ET TROJAN DarkGate Domain in DNS Lookup (awsamazon.cc); [1
27,0432018/11/21 2026634  ET TROJAN DarkGate Domain in DNS Lookup (battlenet .la); [1
27,0422018/11/21 2026631  ET TROJAN DarkGate Domain in DNS Lookup (akamai .la); [1
27,0412018/11/21 2026630  ET TROJAN DarkGate CnC Requesting Data Exfiltration from Bot; [1
27,0402018/11/21 2026628  ET TROJAN JS.InfectedMikrotik Injects Domain Observed in DNS Lookup; [1
27,0392018/11/21 2026629  ET TROJAN DarkGate CNC Checkin; [1
27,0382018/11/21 2026632  ET TROJAN DarkGate Domain in DNS Lookup (hardwarenet .cc); [1
27,0372018/11/21 2026627  ET TROJAN JS.InfectedMikrotik Injects Domain Observed in TLS SNI; [1
27,0362018/11/21 2026622  ET TROJAN JS.InfectedMikrotik Injects Domain Observed in DNS Lookup; [1
27,0352018/11/21 2026624  ET TROJAN JS.InfectedMikrotik Injects Domain Observed in DNS Lookup; [1
27,0342018/11/21 2026625  ET TROJAN JS.InfectedMikrotik Injects Domain Observed in DNS Lookup; [1
27,0332018/11/21 2026623  ET TROJAN JS.InfectedMikrotik Injects Domain Observed in DNS Lookup; [1
27,0322018/11/21 2026626  ET TROJAN JS.InfectedMikrotik Injects Domain Observed in DNS Lookup; [1
27,0312018/11/21 2026621  ET TROJAN JS.InfectedMikrotik Injects Domain Observed in DNS Lookup; [1
27,0302018/11/15 2026605  ET WEB_CLIENT Attempted WordPress GDPR Plugin Privilege Escalation M1 (Enable Registration); [1
27,0292018/11/15 2026602  ET CURRENT_EVENTS Observed Malicious SSL Cert (MageCart Group 4 Staging Domain); [1
27,0282018/11/15 2026607  ET TROJAN Muhstik Bot Reporting Vulnerable Server to CnC; [1
27,0272018/11/15 2026603  ET CURRENT_EVENTS Observed Malicious SSL Cert (MageCart Group 5 Staging Domain); [1
27,0262018/11/15 2026593  ET CURRENT_EVENTS Observed Malicious SSL Cert (MageCart Group 4 Staging Domain); [1
27,0252018/11/15 2026589  ET TROJAN Observed Malicious SSL Cert (MageCart Group 1/2 CnC); [1
27,0242018/11/15 2026596  ET CURRENT_EVENTS Observed Malicious SSL Cert (MageCart Group 4 Staging Domain); [1
27,0232018/11/15 2026594  ET CURRENT_EVENTS Observed Malicious SSL Cert (MageCart Group 4 Staging Domain); [1
27,0222018/11/15 2026604  ET WEB_CLIENT [Volex] Possible ColdFusion Unauthenticated Upload Attempt (CVE-2018-15961); [1
27,0212018/11/15 2026599  ET CURRENT_EVENTS Observed Malicious SSL Cert (MageCart Group 4 Staging Domain); [1
27,0202018/11/15 2026597  ET CURRENT_EVENTS Observed Malicious SSL Cert (MageCart Group 4 Staging Domain); [1
27,0192018/11/15 2026592  ET CURRENT_EVENTS Observed Malicious SSL Cert (MageCart Group 3 Staging Domain); [1
27,0182018/11/15 2026606  ET WEB_CLIENT Attempted WordPress GDPR Plugin Privilege Escalation M2 (Set as Administrator); [1
27,0172018/11/15 2026608  ET TROJAN JunkMiner Downloader Communicating with CnC;  
27,0162018/11/15 2026595  ET CURRENT_EVENTS Observed Malicious SSL Cert (MageCart Group 4 Staging Domain); [1
27,0152018/11/15 2026601  ET CURRENT_EVENTS Observed Malicious SSL Cert (MageCart Group 4 Staging Domain); [1
27,0142018/11/15 2026600  ET CURRENT_EVENTS Observed Malicious SSL Cert (MageCart Group 4 Staging Domain); [1
27,0132018/11/15 2026598  ET CURRENT_EVENTS Observed Malicious SSL Cert (MageCart Group 4 Staging Domain); [1
27,0122018/11/15 2026590  ET CURRENT_EVENTS Observed Malicious SSL Cert (MageCart Group 1/2 Staging Domain); [1
1  2  3  4  5  6  7  8  9  10 >
GigaVPN & GigaIPS is based MikroTik, Suricata and EmergingThreats.
Copyright ⓒ 2010 . All Rights Reserved.