번호 | 날짜 | ID | 시그니처 (Total Ruleset: 27,111개) |
27,111 | 2018/12/12 | 2026721 | ET TROJAN Win32/DanaBot Harvesting Email Addresses 1; [1] |
27,110 | 2018/12/12 | 2026720 | ET TROJAN Win32/DanaBot Harvesting Email Addresses 2; [1] |
27,109 | 2018/12/12 | 2026719 | ET WEB_SERVER HP Intelligent Management Java Deserialization RCE Attempt; [1] |
27,108 | 2018/12/11 | 2026717 | ET TROJAN ELF/Samba CnC Checkin; [1] |
27,107 | 2018/12/11 | 2026718 | ET POLICY External IP Lookup Domain (ifconfig .me); |
27,106 | 2018/12/09 | 2026716 | ET TROJAN Cobalt Group/More_Eggs CnC Domain in DNS Lookup; [1] |
27,105 | 2018/12/09 | 2026711 | ET TROJAN Cobalt Group/More_Eggs CnC Domain in DNS Lookup; [1] |
27,104 | 2018/12/09 | 2026712 | ET TROJAN Cobalt Group/More_Eggs CnC Domain in DNS Lookup; [1] |
27,103 | 2018/12/09 | 2026715 | ET TROJAN Cobalt Group/More_Eggs CnC Domain in DNS Lookup; [1] |
27,102 | 2018/12/09 | 2026713 | ET TROJAN Cobalt Group/More_Eggs CnC Domain in DNS Lookup; [1] |
27,101 | 2018/12/09 | 2026703 | ET TROJAN Observed Malicious SSL Cert (Cobalt Group/More_Eggs CnC); [1] |
27,100 | 2018/12/09 | 2026708 | ET TROJAN Cobalt Group/More_Eggs CnC Domain in DNS Lookup; [1] |
27,099 | 2018/12/09 | 2026709 | ET TROJAN Cobalt Group/More_Eggs CnC Domain in DNS Lookup; [1] |
27,098 | 2018/12/09 | 2026707 | ET TROJAN Cobalt Group/More_Eggs CnC Domain in DNS Lookup; [1] |
27,097 | 2018/12/09 | 2026710 | ET TROJAN Cobalt Group/More_Eggs CnC Domain in DNS Lookup; [1] |
27,096 | 2018/12/09 | 2026714 | ET TROJAN Cobalt Group/More_Eggs CnC Domain in DNS Lookup; [1] |
27,095 | 2018/12/09 | 2026705 | ET TROJAN Cobalt Group/More_Eggs CnC Domain in DNS Lookup; [1] |
27,094 | 2018/12/09 | 2026704 | ET TROJAN Cobalt Group/More_Eggs CnC Domain in DNS Lookup; [1] |
27,093 | 2018/12/09 | 2026706 | ET TROJAN Cobalt Group/More_Eggs CnC Domain in DNS Lookup; [1] |
27,092 | 2018/12/07 | 2026700 | ET TROJAN STOLENPENCIL CnC Domain in DNS Lookup; [1] |
27,091 | 2018/12/07 | 2026688 | ET TROJAN [PTsecurity] WeChat (Ransomware/Stealer) HttpHeader; |
27,090 | 2018/12/07 | 2026689 | ET TROJAN STOLENPENCIL CnC Domain in DNS Lookup; [1] |
27,089 | 2018/12/07 | 2026693 | ET TROJAN STOLENPENCIL CnC Domain in DNS Lookup; [1] |
27,088 | 2018/12/07 | 2026699 | ET TROJAN STOLENPENCIL CnC Domain in DNS Lookup; [1] |
27,087 | 2018/12/07 | 2026697 | ET TROJAN STOLENPENCIL CnC Domain in DNS Lookup; [1] |
27,086 | 2018/12/07 | 2026690 | ET TROJAN STOLENPENCIL CnC Domain in DNS Lookup; [1] |
27,085 | 2018/12/07 | 2026696 | ET TROJAN STOLENPENCIL CnC Domain in DNS Lookup; [1] |
27,084 | 2018/12/07 | 2026701 | ET TROJAN STOLENPENCIL CnC Domain in DNS Lookup; [1] |
27,083 | 2018/12/07 | 2026692 | ET TROJAN STOLENPENCIL CnC Domain in DNS Lookup; [1] |
27,082 | 2018/12/07 | 2026694 | ET TROJAN STOLENPENCIL CnC Domain in DNS Lookup; [1] |
27,081 | 2018/12/07 | 2026698 | ET TROJAN STOLENPENCIL CnC Domain in DNS Lookup; [1] |
27,080 | 2018/12/07 | 2026695 | ET TROJAN STOLENPENCIL CnC Domain in DNS Lookup; [1] |
27,079 | 2018/12/07 | 2026702 | ET TROJAN STOLENPENCIL CnC Domain in DNS Lookup; [1] |
27,078 | 2018/12/07 | 2026687 | ET TROJAN [PTsecurity] WeChat (Ransomware/Stealer) Config; [1] |
27,077 | 2018/12/07 | 2026691 | ET TROJAN STOLENPENCIL CnC Domain in DNS Lookup; [1] |
27,076 | 2018/12/06 | 2026686 | ET CURRENT_EVENTS Observed DNS Query for MageCart Data Exfil Domain; [1] |
27,075 | 2018/12/06 | 2026685 | ET CURRENT_EVENTS Observed DNS Query for MageCart Data Exfil Domain; [1] |
27,074 | 2018/12/06 | 2026684 | ET INFO Certificate with Unknown Content M2; [1] |
27,073 | 2018/12/02 | 2026682 | ET DELETED Delphi APT28 Zebrocy/Zekapab Reporting to CnC; [1] |
27,072 | 2018/12/02 | 2026683 | ET TROJAN MSIL APT28 Zebrocy/Zekapab Reporting to CnC; [1] |
27,071 | 2018/12/01 | 2026681 | ET TROJAN DNSpionage Requesting Config; [1] |
27,070 | 2018/12/01 | 2026676 | ET CURRENT_EVENTS Inbound PowerShell Saving Base64 Decoded Payload to Temp M2 2018-11-29; [1] |
27,069 | 2018/12/01 | 2026679 | ET CURRENT_EVENTS Observed Malicious SSL Cert (POWERSTATS Proxy CnC); [1] |
27,068 | 2018/12/01 | 2026680 | ET TROJAN DNS Query for DNSpionage CnC Domain; [1] |
27,067 | 2018/12/01 | 2026678 | ET CURRENT_EVENTS Observed Malicious SSL Cert (POWERSTATS Proxy CnC); [1] |
27,066 | 2018/12/01 | 2026674 | ET INFO Minimal HTTP GET Request to Bit.ly; |
27,065 | 2018/12/01 | 2026677 | ET CURRENT_EVENTS Inbound PowerShell Executing Base64 Decoded VBE from Temp 2018-11-29; [1] |
27,064 | 2018/12/01 | 2026673 | ET TROJAN IcedID WebSocket Request; |
27,063 | 2018/12/01 | 2026675 | ET CURRENT_EVENTS Inbound PowerShell Saving Base64 Decoded Payload to Temp M1 2018-11-29; [1] |
27,062 | 2018/11/30 | 2026671 | ET TROJAN L0rdix Stealer CnC Data Exfil; [1] |
1 2 3 4 5 6 7 8 9 10 > |